Security & Threat Intelligence · 24.08.2026, 21:46 UTC
ZDI-26-608: Linux Kernel KVM IOAPIC Use-After-Free Local Privilege Escalation Vulnerability
| Schweregrad | high |
|---|---|
| CVSS | 8.2 |
| Kategorie | Security & Threat Intelligence |
| Quelle | Zero Day Initiative ↗ |
| Veröffentlicht | 24.08.2026 UTC |
Sicherheitsmeldung mit Schweregrad hoch (CVSS 8.2). Technische Details im Tab „Originaltext“; empfohlene Schritte in der Checkliste.
This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to execute high-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.2.
Maßnahmen
⬇ Als MarkdownVerwandte Beiträge
- high ZDI-26-589: BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability
- critical ZDI-26-590: libwebsockets HTTP/2 HPACK Path Header Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
- high ZDI-26-591: NVIDIA TensorRT ONNX File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
- high ZDI-26-592: NVIDIA TensorRT ONNX File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability