A new Linux kernel vulnerability, CVE-2026-53264, allows local users to run arbitrary code and escalate to root access due to a use-after-free issue in the net/sched packet scheduler. The CVSS score is rated at 7.8 (High). The flaw can be exploited by causing a race condition during traffic control actions. Currently, there is no confirmed exploitation in the wild. Patches have been released for affected versions, and administrators are advised to update their kernels immediately. The vulnerability primarily impacts environments with unprivileged user namespaces and certain traffic control setups.
Linux Kernel Flaw CVE-2026-53264 Lets Users Gain Root Access
CyberSIXT Evidence Panel
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
Linux Kernel Flaw CVE-2026-53264 Lets Users Gain Root Access
securityonline.info
-
AI assisted research finds Linux kernel flaw CVE-2026-53264
infosecurity-magazine.com