Linux Kernel
Vulnerabilities in the upstream Linux kernel — local privilege escalations, use-after-frees, race conditions, and the subsystems (epoll, netfilter, io_uring, eBPF) that keep producing them — plus the downstream impact on Android devices and long-lived LTS deployments.
ksmbd multichannel session-key stack buffer overflow
ksmbd stack buffer overflow in multichannel session binding: 40 bytes copied into a 16-byte kernel stack buffer. Patched in Linux stable; no CVSS assigned yet.
Linux dm keyring leak causes silent LUKS volume key wipe failure
Refactoring regression in Linux device-mapper causes cryptsetup luksSuspend to silently fail to wipe the LUKS volume key from kernel memory.
Linux kernel NVMe-oF auth heap overflow via short AUTH_RECEIVE buffer
A remote NVMe-oF initiator can supply a short-but-nonzero AUTH_RECEIVE allocation length to trigger a heap write past the allocated buffer on the nvmet target during DH-HMAC-CHAP authentication.
Linux kernel TPM character device pread() out-of-bounds read
TPM character devices were registered with seekable file operations, allowing pread() with an arbitrary offset to read past the response buffer in tpm_common_read().
Linux kernel ThunderboltIP frags[] array overflow in tbnet_poll()
The Linux kernel ThunderboltIP driver overflows the skb frags[] array when assembling packets with more than 18 frames, enabling heap corruption by a malicious Thunderbolt peer.
RefluXFS: Linux Kernel XFS Race Condition Allows Local Root
Nine-year-old XFS race condition in the Linux kernel lets an unprivileged local user gain persistent root access on default RHEL, Fedora Server, and Amazon Linux installs.

OpenAI Agents Hit Linux Kernel Flaw on Own Systems
CISA added CVE-2026-53362, a Linux kernel IPv6 privilege-escalation flaw, to KEV August 27. OpenAI's agents exploited it in-house. Patch deadline: August 30.

August Kernel Drop: The Enterprise CVEs Nobody Wrote About
Thirty-plus kernel CVEs hit NVD on August 15. Three affecting ThunderboltIP, NVMe-oF auth, and TPM matter to enterprise infrastructure and flew under radar.

Linux Kernel Patches WiFi Heap Overflow, BPF Bypass
August 15 kernel stable drop fixes a Broadcom WiFi heap overflow triggerable by a rogue AP, a BPF verifier bypass, and 28 other security fixes.

Linux CAN Subsystem Gets 14-CVE Race Condition Fix Wave
The August 15 Linux stable drop patches 14 CVEs in the CAN broadcast manager and ISO 15765-2 transport: data races and use-after-frees.

Linux dm Bug Silently Breaks LUKS Key Wipe
Kernel refactoring regression in Linux device-mapper causes cryptsetup luksSuspend to silently fail to wipe the LUKS volume key. Patch is in stable.

Linux ksmbd SMB Server: Stack Overflow Fix in Stable
CVE-2026-72044 patches a ksmbd stack overflow in multichannel session binding. Patched in stable; no CVSS assigned yet, no exploitation confirmed.

AI Speeds Linux Kernel Exploit: CVE-2026-53264 Local Root
STAR Labs published a working exploit for CVE-2026-53264 (CVSS 7.8), a use-after-free race in the Linux kernel traffic-control subsystem. AI accelerated discovery and exploit development on CentOS Stream 9.

Linux Kernel tc Race Yields Root Exploit (CVSS 7.8)
STAR Labs published a root exploit for CVE-2026-53264, a use-after-free race in the Linux kernel's traffic-control subsystem. CVSS 7.8. Check your distro advisory.

RefluXFS LPE Hits Default RHEL, Fedora, Amazon Linux
Nine-year-old XFS race condition in the Linux kernel lets an unprivileged local user gain root on default RHEL, Fedora Server, and Amazon Linux.

snap-confine LPE Hits Default Ubuntu Desktop Installs
CVE-2026-8933 (CVSS 7.8): snap-confine on Ubuntu Desktop lets any local user escalate to root. Affects 24.04 LTS, 25.10, and 26.04 default installs.

GhostLock: 15-Year Linux Kernel Root/Container Escape
Nebula Security's GhostLock (CVE-2026-43499) — a 15-year-old futex use-after-free — hits every mainstream Linux distro. Escapes containers. Patch again.

Januscape (CVE-2026-53359): 16-year KVM guest-to-host escape
A 16-year-old use-after-free in KVM's shadow MMU lets a guest VM panic — or, with an unreleased exploit, root — the host on Intel and AMD. Patched June 19.

Bad Epoll: Linux Kernel LPE Also Hits Android
A newly disclosed use-after-free in Linux 6.4+ kernels lets an unprivileged local user gain root. Android on affected kernels is in scope; the upstream fix is in.