A Linux kernel vulnerability, tracked as CVE-2026-64561 and named Zapscape, could allow attackers to escape a KVM virtual machine and take control of its underlying Linux host with root privileges.
The issue affects KVM/x86, a virtualization technology that separates guest...
A public proof-of-concept has been released for a use-after-free flaw affecting the Linux kernel’s bridge subsystem, specifically its Spanning Tree Protocol implementation in net/bridge.
The issue can leave STP timers active after the bridge network device that owns them has...
The Linux kernel project has released fixes for over 400 vulnerabilities within approximately 24 hours. These vulnerabilities span various areas, including networking, filesystems, memory management, Bluetooth, virtualization, drivers, and security components.
This rapid wave of Common Vulnerabilities and Exposures (CVE)...
A Linux kernel vulnerability in the FUSE subsystem can allow a local attacker to gain root privileges by overflowing the page cache with attacker-controlled directory entries.
The flaw is tracked as CVE-2026-31694 and affects the code path used when the...
A critical Linux kernel vulnerability, tracked as CVE-2026-43499 and dubbed “GhostLock,” has been disclosed by security researchers at VEGA, exposing a privilege escalation flaw that has silently affected major Linux distributions for over a decade.
GhostLock originates from a logic...
The "Linux network monitoring" concept describes keeping monitors on and evaluating a network's performance, capacity, and overall health.
Specialist tools and software capture, measure, and analyze data on network traffic, bandwidth utilization, latency, and connected devices.
Administrators can monitor everything...
A proof-of-concept (PoC) exploit has been released for a critical Linux kernel vulnerability, CVE-2026-46316, that enables a guest-to-host escape in KVM environments on arm64 systems.
The flaw, named “ITScape,” allows attackers to break out of a virtual machine and execute...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Linux kernel vulnerability, tracked as CVE-2022-0492, to its Known Exploited Vulnerabilities (KEV) catalog, warning that the flaw is being actively leveraged in real-world attacks.
The issue, categorized as...
A newly disclosed Linux local privilege escalation (LPE) vulnerability dubbed "CIFSwitch" enables low-privileged users to gain root access by abusing a logic flaw between the Linux kernel CIFS client and the userspace cifs-utils package.
The bug was discovered by security researcher Asim Manizada,...
A newly disclosed Linux kernel vulnerability, tracked as CVE-2026-46333, exposes a serious local privilege escalation flaw that has remained undetected for nearly nine years.
Security researchers at the Qualys Threat Research Unit (TRU) revealed that the issue allows attackers to...