Skip to content
Threat Feed

Tag

Kernel

47 briefs RSS
high threat

CISA Adds Two Exploited Linux Kernel Vulnerabilities to KEV Catalog

CISA has added CVE-2025-39964 and CVE-2026-53266, two actively exploited Linux kernel vulnerabilities, to its Known Exploited Vulnerabilities catalog.

exploited Linux Kernel +1 vulnerability-management linux kernel cisa-kev
2c
high advisory

Memory Corruption in Linux Kernel I2C Subsystem (CVE-2026-25278)

A race condition vulnerability in the Linux kernel I2C subsystem allows local attackers to trigger memory corruption, potentially leading to system crashes or privilege escalation.

Linux Kernel linux kernel vulnerability privilege-escalation
1t 1c
high advisory

Local Privilege Escalation Vulnerability in Windows 11 Secure Kernel Mode

A vulnerability in the Secure Kernel Mode of Microsoft Windows 11 allows a local attacker to perform privilege escalation on the affected system.

Windows 11 windows privilege-escalation kernel
1t
high advisory

CVE-2026-57842: Kernel Use-After-Free in NetBSD COMPAT_NETBSD32 Layer

A use-after-free and double-free vulnerability in the NetBSD kernel's COMPAT_NETBSD32 layer allows local users to trigger memory corruption or kernel panics via crafted recvmsg system calls.

NetBSD kernel vulnerability privilege-escalation
1t 1c
high advisory

Remote Code Execution Vulnerability in SAP Extended Passport Processing

A critical unauthenticated remote code execution vulnerability in the SAP Extended Passport (EPP) kernel component allows attackers to execute arbitrary system commands via RFC or HTTP communication layers.

SAP Kernel sap rce kernel vulnerability
2t
high advisory

Local Privilege Escalation in util-linux via Race Condition

A vulnerability in util-linux allows unprivileged local users to perform arbitrary bind mounts and change file ownership or permissions by exploiting a race condition in SUID mount(8) handling of fstab entries.

util-linux +1 privilege-escalation linux local-exploit kernel
1t 1c updated
high threat

Local Privilege Escalation in Ubuntu Kernel via OverlayFS

Publicly available proof-of-concept exploits targeting CVE-2023-2640 and CVE-2023-32629 allow unprivileged users to gain root access on Ubuntu systems by bypassing permission checks in the overlayfs subsystem.

exploited Ubuntu privilege-escalation linux kernel overlayfs
1t 2c
medium advisory

Detection of Tainted Kernel Module Loading on Linux

The loading of tainted Linux kernel modules may indicate the presence of rootkits or malicious persistence mechanisms used to bypass security controls and intercept system calls.

linux persistence rootkit kernel
1r 2t
medium advisory

Kernel Denial of Service Vulnerability in vmxnet3 Driver

CVE-2026-68299 is a kernel-level denial of service vulnerability in the vmxnet3 virtual network driver caused by a BUG_ON condition when processing malformed Geneve-encapsulated packets.

vmxnet3 denial-of-service kernel infrastructure
1c
medium advisory

Microchip WILC1000 Wi-Fi Driver Vulnerability

CVE-2026-68196 is a memory corruption vulnerability in the Microchip WILC1000 Linux kernel driver caused by insufficient validation of the association response length prior to header subtraction.

WILC1000 vulnerability linux kernel
1c
medium threat

Vulnerability in Linux Kernel fscrypt Subsystem

CVE-2026-68147 addresses a memory management vulnerability in the Linux kernel fscrypt subsystem within the fscrypt_get_devices function, where improper dynamic allocation could lead to memory corruption or exhaustion.

exploited fscrypt vulnerability kernel linux informational
1c
medium advisory

Intel i915 Driver Speculation Barrier Vulnerability

CVE-2026-68269 describes a missing speculation barrier in the Intel i915 graphics driver that could enable transient execution side-channel attacks by allowing unauthorized speculative memory access.

i915 Graphics Driver vulnerability kernel linux
1c
medium advisory

Out-of-bounds Vulnerability in NXP i.MX 8 Image Signal Processor Driver

A potential out-of-bounds memory vulnerability in the NXP i.MX 8 Image Signal Processor (ISI) driver could lead to system instability or memory corruption if triggered by an attacker with driver-level access.

i.MX 8 ISI vulnerability kernel hardware informational
1c
medium advisory

NULL Pointer Dereference Vulnerability in MediaTek mt76 Wi-Fi Driver

A NULL pointer dereference vulnerability exists in the MediaTek mt76 driver within the mt76_connac_mcu_uni_bss_he_tlv function, potentially leading to kernel panic or denial-of-service conditions.

mt76 vulnerability denial-of-service kernel firmware informational product-news linux
1c
low threat

Vulnerability in Linux Kernel RADOS Block Device Module

CVE-2026-68131 identifies a flaw in the Linux kernel rbd module where failure to reset result codes to zero during object map updates may lead to improper status reporting.

exploited rbd informational kernel linux storage
1c
medium advisory

Missing Superblock Check in fscrypt find_or_insert_direct_key

A vulnerability in the Linux kernel fscrypt subsystem exists due to a missing superblock check in the find_or_insert_direct_key function, potentially impacting filesystem integrity.

fscrypt vulnerability linux kernel informational
1c
high advisory

Path Resolution Vulnerability in Linux ksmbd Kernel Module

CVE-2026-68083 describes a path resolution vulnerability in the ksmbd_vfs_kern_path_create function within the Linux kernel ksmbd module that may allow unauthorized file system operations.

ksmbd vulnerability kernel smb linux
1c
medium advisory

Vulnerability in AMD Display Driver for Linux Kernel

A memory management flaw in the AMD display driver (drm/amd/display) for the Linux kernel allows for improper handling of DisplayPort Multi-Stream Transport (DP MST) configurations.

amdgpu vulnerability linux kernel informational product-news linux-kernel kernel-security kernel-vulnerability +1
1t 1c
low threat

Linux Kernel cfg80211 Wireless Subsystem Vulnerability

CVE-2026-68412 identifies an error handling flaw in the cfg80211_wext_siwscan function of the Linux kernel wireless subsystem, potentially leading to instability during wireless scanning operations.

exploited cfg80211 vulnerability linux kernel
1c
medium advisory

Linux Kernel binfmt_misc Privilege Escalation Vulnerability

CVE-2026-68186 describes a vulnerability in the Linux kernel binfmt_misc module where the have_execfd flag is set prematurely, potentially enabling local privilege escalation.

Linux Kernel +1 linux kernel vulnerability privilege-escalation mac802154 cve linux-kernel networking +2
medium advisory

KVM Shadow VMCS Memory Handling Vulnerability

A vulnerability in the Linux kernel KVM module allows a guest user to trigger memory corruption via improper shadow VMCS handling after a VMCLEAR operation.

Kernel vulnerability virtualization linux denial-of-service kernel-security
1t 1c updated
medium advisory

Vulnerability in Linux KVM MMU Page Management

CVE-2026-64561 identifies a flaw in the Linux KVM hypervisor where incorrect validation of MMU pages could lead to memory management inconsistencies.

KVM vulnerability linux virtualization informational privilege-escalation kernel kernel-vulnerability arm64
1t 1c updated
high advisory

Linux Kernel MPLS NULL Pointer Dereference Vulnerability

A NULL pointer dereference vulnerability in the Linux kernel's MPLS subsystem, specifically affecting configurations where CONFIG_INET is disabled, can lead to a denial-of-service condition.

Linux Kernel vulnerability linux kernel informational stability cve filesystem product-news +13
2t 1c updated
medium advisory

Exploitation of Linux Kernel GSM 0710 TTY Multiplexor Race Condition

An unprivileged local user can escalate privileges to root by exploiting a race condition in the Linux kernel GSM 0710 tty multiplexor (CVE-2023-6546).

Linux kernel privilege-escalation linux kernel
1r 1t 5c updated
high threat

Linux Kernel USB Type-C Wcove Driver Buffer Overflow Vulnerability

A buffer overflow vulnerability, identified as CVE-2026-63960, exists in the `wcove_read_rx_buffer()` function within the USB Type-C `wcove` driver in the Linux kernel, potentially leading to memory corruption or system instability upon exploitation.

exploited Linux Kernel linux kernel vulnerability buffer-overflow cve
1c
medium threat

CVE-2026-64117 Vulnerability in Linux Kernel mac80211 Wi-Fi Subsystem

A vulnerability, CVE-2026-64117, has been disclosed in the Linux kernel's mac80211 Wi-Fi subsystem, potentially leading to unexpected behavior or information exposure due to incorrect handling of fast-RX rates and `skb->cb` buffer reuse in mesh networking contexts.

exploited mac80211 linux vulnerability kernel wifi
1c
medium threat

CVE-2026-64097: AMD Display Module Vulnerability in Linux Kernel

A vulnerability, CVE-2026-64097, affects the `drm/amd/display` module in the Linux kernel due to insufficient validation of GPIO pin LUT table size, potentially leading to system instability or other security impacts on Linux systems utilizing AMD display drivers.

exploited Linux Kernel vulnerability linux kernel amd denial-of-service
1c
high advisory

Linux Kernel fbdev Use-After-Free Vulnerability (CVE-2026-53401)

A high-severity use-after-free vulnerability, CVE-2026-53401, has been identified in the Linux kernel's fbdev subsystem affecting omap2 processors, potentially allowing for privilege escalation or denial of service.

Linux kernel linux vulnerability kernel use-after-free
1c
high threat

Linux Kernel ip_gre Module Vulnerability CVE-2026-63829

A vulnerability identified as CVE-2026-63829 affects the `ip_gre` module in the Linux kernel, involving a security fix to ensure that the `changelink` operation properly requires `CAP_NET_ADMIN` capabilities within the device's network namespace, addressing a potential privilege escalation or security bypass scenario.

exploited Linux Kernel linux vulnerability kernel privilege-escalation nfs information-disclosure linux-kernel oob-read
1c
high advisory

CVE-2026-63833: Linux Kernel ntfs3 Privilege Escalation Vulnerability

The Microsoft Security Response Center has published information concerning CVE-2026-63833, a privilege escalation vulnerability in the Linux kernel's `ntfs3` module that allows direct userspace writes to reserved `$LX*` extended attributes.

Linux Kernel linux kernel vulnerability privilege-escalation
1c
medium advisory

Linux Kernel Vulnerability (xfrm: iptfs) Allows Local DoS and Data Manipulation

A local attacker can exploit a vulnerability in the Linux Kernel's xfrm: iptfs component to potentially trigger a denial-of-service condition or manipulate data on affected systems.

Linux Kernel linux-kernel vulnerability dos data-manipulation kernel
2t
high advisory

Public Exploit for Linux Kernel Use-After-Free Vulnerability CVE-2026-43499

A public exploit has been published for CVE-2026-43499, a Use-After-Free vulnerability in the Linux Kernel, demonstrated to achieve KASLR bypass and potential privilege escalation on Android 15 devices running Linux Kernel 5.15.149, significantly elevating risk for unpatched systems.

PoC Linux Kernel 5.15.149 +5 linux kernel vulnerability use-after-free privilege-escalation android
1t 2c 6i updated
high threat

CVE-2026-53359: KVM x86 Use-After-Free in Shadow Paging

CVE-2026-53359 is a high-severity use-after-free vulnerability affecting the KVM virtualization component on x86 architectures within the Linux kernel, stemming from an unexpected role in shadow paging, which could lead to host system compromise.

exploited PoC Linux kernel +3 linux kernel kvm virtualization vulnerability use-after-free cve
1c 6i updated
high advisory

CIFSwitch Linux Kernel Local Privilege Escalation Vulnerability

The CIFSwitch vulnerability in the Linux kernel allows an unprivileged user to forge CIFS authentication key descriptions, abuse the kernel's key request mechanism, and gain root privileges by loading a malicious NSS module.

Linux Mint +12 privilege-escalation linux cifs kernel
2r 1t
high advisory

Multiple Vulnerabilities in Linux Kernel Allow Privilege Escalation and Denial of Service

A local attacker can exploit multiple vulnerabilities in the Linux Kernel to escalate privileges, cause a denial-of-service condition, disclose sensitive information, or perform an unspecified attack.

linux kernel linux kernel privilege-escalation denial-of-service
2r 3t
high threat

Fragnesia: Linux Kernel Local Privilege Escalation via ESP-in-TCP

A new local privilege escalation vulnerability in the Linux kernel's XFRM ESP-in-TCP subsystem, named "Fragnesia," allows unprivileged local attackers to modify read-only file contents in the kernel page cache and achieve root privileges through a deterministic page-cache corruption.

privilege-escalation linux kernel
2r 1t
high advisory

CVE-2026-35420 - Windows Kernel Heap-Based Buffer Overflow Local Privilege Escalation

CVE-2026-35420 is a heap-based buffer overflow vulnerability in the Windows Kernel that allows an authorized local attacker to elevate privileges.

Windows Kernel privilege-escalation windows kernel buffer-overflow
2r 1t 1c
medium advisory

Linux Kernel: Local Privilege Escalation Vulnerabilities

A local attacker can exploit multiple vulnerabilities in the Linux Kernel to escalate privileges or manipulate files.

linux kernel privilege-escalation linux kernel
2r 1t
medium advisory

Ubuntu Linux Kernel Vulnerabilities Addressed in Security Notices

Ubuntu released security notices between May 4 and 10, 2026, addressing vulnerabilities in the Linux kernel affecting Ubuntu 20.04 LTS, 22.04 LTS, 24.04 LTS, and 25.10, requiring timely updates.

Ubuntu 20.04 LTS +3 linux kernel vulnerability patch
2r
high advisory

CVE-2026-31718 ksmbd Use-After-Free Vulnerability

CVE-2026-31718 is a use-after-free vulnerability in the ksmbd kernel module, specifically in the __ksmbd_close_fd() function, which can be triggered via the durable scavenger mechanism, potentially leading to arbitrary code execution.

use-after-free smb ksmbd CVE-2026-31718 kernel
2r 1t 1c
critical advisory

CVE-2026-31431 'Copy Fail' Linux Kernel Privilege Escalation

The 'Copy Fail' vulnerability (CVE-2026-31431) in the Linux kernel allows a local attacker to escalate privileges to root, potentially leading to container breakout and lateral movement in cloud environments.

Amazon Linux 2023 +3 privilege-escalation linux kernel
2r 1t 1c
critical advisory

Multiple Vulnerabilities in Red Hat Linux Kernel

Multiple vulnerabilities in the Red Hat Linux kernel allow for arbitrary code execution, privilege escalation, and remote denial of service.

Red Hat CodeReady Linux Builder +1 vulnerability kernel redhat execution privilege-escalation denial-of-service
2r 3t 5c
high advisory

CVE-2026-26179 Windows Kernel Double Free Privilege Escalation

CVE-2026-26179 is a double free vulnerability in the Windows Kernel, allowing a locally authenticated attacker to elevate privileges on the system.

privilege-escalation windows kernel double-free
2r 1t 1c
high advisory

Out-of-Cancel Vulnerability Class in Linux Workqueue Cancellation APIs

The 'Out-of-Cancel' vulnerability class stems from flaws in Linux workqueue cancellation APIs, potentially leading to exploitable conditions within the kernel.

linux kernel vulnerability workqueue
2r 1t
high advisory

Untrusted Driver Loaded by Windows Kernel

An untrusted driver loaded by the Windows kernel may indicate an attempt to bypass code signing policies and execute unsigned or self-signed kernel code, potentially leading to defense evasion.

Windows Kernel +1 defense-evasion driver-load kernel
3r 1t 4i
low advisory

Linux Kernel Instrumentation Discovery via Kprobes and Tracefs

Adversaries may attempt to discover kernel instrumentation tools like Kprobes and Tracefs on Linux systems to understand the security landscape and potential detection mechanisms.

Linux Kernel kernel discovery linux tracefs kprobes
2r 1t
high advisory

Linux BPF Program Tampering for Defense Evasion

Attackers can manipulate or tamper with Berkeley Packet Filter (BPF) programs on Linux systems to evade detection or analysis by security tools that rely on BPF for monitoring and security enforcement.

Linux Kernel defense-evasion bpf linux kernel
2r 1t