THE article discusses a critical vulnerability named OVSwrap (CVE-2026-64531) discovered in the Linux kernel’s Open vSwitch, allowing local users to escalate their privileges to root on various distributions. Disclosed by researcher Asim Manizada, the flaw has a CVSS score of 7.8 and has been present for 13 years. A recent change in the kernel removed a 32 KiB cap, making the exploit accessible.
Attackers can exploit this weakness without needing an existing Open vSwitch bridge or elevated privileges, potentially affecting numerous default-configured distributions. A proof-of-concept exploit has been released, and users are urged to patch their systems immediately or block Open vSwitch module loading if they cannot. Recommended distributions that are vulnerable include Fedora, Debian, and Ubuntu among others.