<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>0dayNews — Linux Kernel</title><description>Vulnerabilities in the upstream Linux kernel — local privilege escalations, use-after-frees, race conditions, and the subsystems (epoll, netfilter, io_uring, eBPF) that keep producing them — plus the downstream impact on Android devices and long-lived LTS deployments. Combined article + CVE feed for the Linux Kernel beat.</description><link>https://0daynews.com/</link><language>en-us</language><item><title>OpenAI Agents Hit Linux Kernel Flaw on Own Systems</title><link>https://0daynews.com/articles/2026-08-29-openai-agents-cve-2026-53362-linux-kernel-kev/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-29-openai-agents-cve-2026-53362-linux-kernel-kev/</guid><description>CISA added CVE-2026-53362, a Linux kernel IPv6 privilege-escalation flaw, to KEV August 27. OpenAI&apos;s agents exploited it in-house. Patch deadline: August 30.</description><pubDate>Sat, 29 Aug 2026 10:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>CVE-2026-64600 — RefluXFS: Linux Kernel XFS Race Condition Allows Local Root</title><link>https://0daynews.com/cve/cve-2026-64600/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-64600/</guid><description>Nine-year-old XFS race condition in the Linux kernel lets an unprivileged local user gain persistent root access on default RHEL, Fedora Server, and Amazon Linux installs.</description><pubDate>Fri, 28 Aug 2026 00:00:00 GMT</pubDate><category>Linux Kernel</category><category>high</category><category>cve</category></item><item><title>CVE-2026-72103 — Linux dm keyring leak causes silent LUKS volume key wipe failure</title><link>https://0daynews.com/cve/cve-2026-72103/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-72103/</guid><description>Refactoring regression in Linux device-mapper causes cryptsetup luksSuspend to silently fail to wipe the LUKS volume key from kernel memory.</description><pubDate>Fri, 28 Aug 2026 00:00:00 GMT</pubDate><category>Linux Kernel</category><category>medium</category><category>cve</category></item><item><title>CVE-2026-72130 — Linux kernel NVMe-oF auth heap overflow via short AUTH_RECEIVE buffer</title><link>https://0daynews.com/cve/cve-2026-72130/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-72130/</guid><description>A remote NVMe-oF initiator can supply a short-but-nonzero AUTH_RECEIVE allocation length to trigger a heap write past the allocated buffer on the nvmet target during DH-HMAC-CHAP authentication.</description><pubDate>Fri, 28 Aug 2026 00:00:00 GMT</pubDate><category>Linux Kernel</category><category>high</category><category>cve</category></item><item><title>CVE-2026-72135 — Linux kernel TPM character device pread() out-of-bounds read</title><link>https://0daynews.com/cve/cve-2026-72135/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-72135/</guid><description>TPM character devices were registered with seekable file operations, allowing pread() with an arbitrary offset to read past the response buffer in tpm_common_read().</description><pubDate>Fri, 28 Aug 2026 00:00:00 GMT</pubDate><category>Linux Kernel</category><category>medium</category><category>cve</category></item><item><title>CVE-2026-72157 — Linux kernel ThunderboltIP frags[] array overflow in tbnet_poll()</title><link>https://0daynews.com/cve/cve-2026-72157/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-72157/</guid><description>The Linux kernel ThunderboltIP driver overflows the skb frags[] array when assembling packets with more than 18 frames, enabling heap corruption by a malicious Thunderbolt peer.</description><pubDate>Fri, 28 Aug 2026 00:00:00 GMT</pubDate><category>Linux Kernel</category><category>high</category><category>cve</category></item><item><title>August Kernel Drop: The Enterprise CVEs Nobody Wrote About</title><link>https://0daynews.com/articles/2026-08-16-august-kernel-drop-enterprise-cves/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-16-august-kernel-drop-enterprise-cves/</guid><description>Thirty-plus kernel CVEs hit NVD on August 15. Three affecting ThunderboltIP, NVMe-oF auth, and TPM matter to enterprise infrastructure and flew under radar.</description><pubDate>Sun, 16 Aug 2026 16:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>Linux Kernel Patches WiFi Heap Overflow, BPF Bypass</title><link>https://0daynews.com/articles/2026-08-16-linux-kernel-brcmfmac-wifi-heap-overflow-bpf-bypass/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-16-linux-kernel-brcmfmac-wifi-heap-overflow-bpf-bypass/</guid><description>August 15 kernel stable drop fixes a Broadcom WiFi heap overflow triggerable by a rogue AP, a BPF verifier bypass, and 28 other security fixes.</description><pubDate>Sun, 16 Aug 2026 14:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>Linux CAN Subsystem Gets 14-CVE Race Condition Fix Wave</title><link>https://0daynews.com/articles/2026-08-16-linux-kernel-can-subsystem-race-condition-patch-wave/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-16-linux-kernel-can-subsystem-race-condition-patch-wave/</guid><description>The August 15 Linux stable drop patches 14 CVEs in the CAN broadcast manager and ISO 15765-2 transport: data races and use-after-frees.</description><pubDate>Sun, 16 Aug 2026 10:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>Linux dm Bug Silently Breaks LUKS Key Wipe</title><link>https://0daynews.com/articles/2026-08-16-linux-dm-luks-key-wipe-cve-2026-72103/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-16-linux-dm-luks-key-wipe-cve-2026-72103/</guid><description>Kernel refactoring regression in Linux device-mapper causes cryptsetup luksSuspend to silently fail to wipe the LUKS volume key. Patch is in stable.</description><pubDate>Sun, 16 Aug 2026 08:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>Linux ksmbd SMB Server: Stack Overflow Fix in Stable</title><link>https://0daynews.com/articles/2026-08-16-ksmbd-stack-overflow-cve-2026-72044/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-16-ksmbd-stack-overflow-cve-2026-72044/</guid><description>CVE-2026-72044 patches a ksmbd stack overflow in multichannel session binding. Patched in stable; no CVSS assigned yet, no exploitation confirmed.</description><pubDate>Sun, 16 Aug 2026 07:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>CVE-2026-72044 — ksmbd multichannel session-key stack buffer overflow</title><link>https://0daynews.com/cve/cve-2026-72044/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-72044/</guid><description>ksmbd stack buffer overflow in multichannel session binding: 40 bytes copied into a 16-byte kernel stack buffer. Patched in Linux stable; no CVSS assigned yet.</description><pubDate>Sun, 16 Aug 2026 00:00:00 GMT</pubDate><category>Linux Kernel</category><category>high</category><category>cve</category></item><item><title>AI Speeds Linux Kernel Exploit: CVE-2026-53264 Local Root</title><link>https://0daynews.com/articles/2026-07-29-linux-cve-2026-53264-ai-exploit-root/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-29-linux-cve-2026-53264-ai-exploit-root/</guid><description>STAR Labs published a working exploit for CVE-2026-53264 (CVSS 7.8), a use-after-free race in the Linux kernel traffic-control subsystem. AI accelerated discovery and exploit development on CentOS Stream 9.</description><pubDate>Thu, 30 Jul 2026 02:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>Linux Kernel tc Race Yields Root Exploit (CVSS 7.8)</title><link>https://0daynews.com/articles/2026-07-28-linux-kernel-tc-cve-2026-53264-lpe/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-28-linux-kernel-tc-cve-2026-53264-lpe/</guid><description>STAR Labs published a root exploit for CVE-2026-53264, a use-after-free race in the Linux kernel&apos;s traffic-control subsystem. CVSS 7.8. Check your distro advisory.</description><pubDate>Tue, 28 Jul 2026 11:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>RefluXFS LPE Hits Default RHEL, Fedora, Amazon Linux</title><link>https://0daynews.com/articles/2026-07-23-refluxfs-cve-2026-64600-linux-kernel-lpe-rhel/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-23-refluxfs-cve-2026-64600-linux-kernel-lpe-rhel/</guid><description>Nine-year-old XFS race condition in the Linux kernel lets an unprivileged local user gain root on default RHEL, Fedora Server, and Amazon Linux.</description><pubDate>Thu, 23 Jul 2026 12:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>snap-confine LPE Hits Default Ubuntu Desktop Installs</title><link>https://0daynews.com/articles/2026-07-22-snap-confine-lpe-ubuntu-desktop-root-fuse/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-22-snap-confine-lpe-ubuntu-desktop-root-fuse/</guid><description>CVE-2026-8933 (CVSS 7.8): snap-confine on Ubuntu Desktop lets any local user escalate to root. Affects 24.04 LTS, 25.10, and 26.04 default installs.</description><pubDate>Wed, 22 Jul 2026 20:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>GhostLock: 15-Year Linux Kernel Root/Container Escape</title><link>https://0daynews.com/articles/2026-07-08-ghostlock-linux-kernel-cve-2026-43499-container-escape/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-08-ghostlock-linux-kernel-cve-2026-43499-container-escape/</guid><description>Nebula Security&apos;s GhostLock (CVE-2026-43499) — a 15-year-old futex use-after-free — hits every mainstream Linux distro. Escapes containers. Patch again.</description><pubDate>Wed, 08 Jul 2026 07:15:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>Januscape (CVE-2026-53359): 16-year KVM guest-to-host escape</title><link>https://0daynews.com/articles/2026-07-07-januscape-cve-2026-53359-kvm-guest-host-escape/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-07-januscape-cve-2026-53359-kvm-guest-host-escape/</guid><description>A 16-year-old use-after-free in KVM&apos;s shadow MMU lets a guest VM panic — or, with an unreleased exploit, root — the host on Intel and AMD. Patched June 19.</description><pubDate>Tue, 07 Jul 2026 23:20:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item><item><title>Bad Epoll: Linux Kernel LPE Also Hits Android</title><link>https://0daynews.com/articles/2026-07-03-bad-epoll-linux-kernel-lpe-cve-2026-46242/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-03-bad-epoll-linux-kernel-lpe-cve-2026-46242/</guid><description>A newly disclosed use-after-free in Linux 6.4+ kernels lets an unprivileged local user gain root. Android on affected kernels is in scope; the upstream fix is in.</description><pubDate>Fri, 03 Jul 2026 21:00:00 GMT</pubDate><category>Linux Kernel</category><category>article</category></item></channel></rss>