Security Risk Category

Linux Security Risks — Page 2

Published vulnerability pages connected to Linux. Each page keeps one canonical URL and focused remediation guidance.

94 published Linux risks

Linux risks

Showing 37–72 of 94 published risks.

highEPSS 0.002

CVE-2026-50670 windows 10 1809 vulnerability

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-50670linuxwindowsinput-validationinformation-disclosure

Updated Jul 17, 2026

highEPSS 0.002

CVE-2026-50673 windows 10 1607 vulnerability

Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-50673linuxwindowsdenial-of-service

Updated Jul 17, 2026

highEPSS 0.015

CVE-2026-50688 windows 10 1607 vulnerability

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-50688linuxwindowsmemory-corruption

Updated Jul 17, 2026

highEPSS 0.003

CVE-2026-56643 windows 10 1607 vulnerability

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-56643linuxwindowsmemory-corruption

Updated Jul 17, 2026

highEPSS 0.003

CVE-2026-56644 windows 10 1607 vulnerability

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-56644linuxwindowsmemory-corruption

Updated Jul 17, 2026

highEPSS 0.003

CVE-2026-58532 windows 10 1607 vulnerability

Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-58532linuxwindowsinput-validation

Updated Jul 17, 2026

mediumEPSS 0.002

CVE-2026-58545 windows 10 1607 vulnerability

Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally.

CVE-2026-58545linuxwindowsauthorization-bypass

Updated Jul 17, 2026

highEPSS 0.003

CVE-2026-15764 in Google Chrome

Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

CVE-2026-15764browserlinuxmemory-corruption

Updated Jul 16, 2026

highEPSS 0.003

CVE-2026-15769 in Google Chrome

Insufficient validation of untrusted input in Linux Toolkit Theming in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVE-2026-15769browserlinuxinput-validationprivilege-escalation

Updated Jul 16, 2026

highEPSS 0.003

CVE-2026-15777 in Google Chrome

Use after free in UI in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVE-2026-15777browserlinuxmemory-corruption

Updated Jul 16, 2026

lowEPSS 0.002

CVE-2026-41579 runc /dev Symlink Host File Modification Vulnerability

runc is a CLI tool for spawning and running containers according to the OCI specification. In versions prior to 1.3.6, 1.4.0-rc.1, 1.4.0-rc.12, 1.5.0-rc.1, and 1.5.0-rc.1, when setting up the container rootfs, setupPtmx and setupDevSymlinks call os.Remove and os.Symlink with a filepath.Join string which allow an image with /dev as a symlink to trick runc into deleting files called ptmx on the host or creating a hardcoded set of symlinks with specific names and targets in an arbitrary pre-existing host directory. This issue is not exploitable under Docker, because Docker creates a top-level read-only layer that masks any malicious /dev symlink present in the container image — unlike some other Linux container tooling, whose higher-level runtimes built on runc remain exposed to exploitation via a malicious image. This issue has been fixed in versions 1.3.6, 1.4.3 and 1.5.0.

CVE-2026-41579linuxcloud-securitydevopssupply-chain

Updated Jul 15, 2026

highEPSS 0.005

CVE-2026-58596 in Microsoft Edge Chromium

Microsoft Edge Chromium has an untrusted pointer dereference issue that can let an attacker gain elevated access over the network.

CVE-2026-58596browserlinuxwindowsmicrosoft

Updated Jul 15, 2026

mediumEPSS 0.002

CVE-2026-5135 in Red Hat Satellite

A flaw was found in Foreman. This broken access control vulnerability allows an authenticated user with host-edit permissions to retarget an existing lookup value override to a different host. This is achieved by modifying the match field through nested host attributes, effectively bypassing authorisation checks. The consequence is the potential for unauthorised modification of managed host configurations across different organisational and location boundaries.

CVE-2026-5135linuxdevopsweb-applicationauthorization-bypass

Updated Jul 15, 2026

mediumEPSS 0.002

CVE-2026-5138 in Red Hat Satellite

A flaw was found in Foreman. An authenticated user with host-edit permissions could exploit a cross-tenant information disclosure vulnerability. This flaw occurs because the taxonomy_scope controller method does not properly validate organization and location IDs from nested request parameters, bypassing existing authorization checks. This allows the user to leak sensitive infrastructure metadata, including subnet topology, IP ranges, gateways, DNS servers, and VLAN IDs, from organizations and locations they are not authorized to access.

CVE-2026-5138linuxnetwork-securitydevopsweb-application

Updated Jul 15, 2026

mediumEPSS 0.003

CVE-2026-5142 in Red Hat Satellite

A flaw was found in foreman. Authenticated users with 'view_keypairs' permission can bypass taxonomy scoping, allowing them to download private SSH (Secure Shell) keys from other organizations by directly querying key pair IDs. This vulnerability leads to cross-tenant data exposure in multi-tenant deployments, potentially compromising sensitive information.

CVE-2026-5142linuxnetwork-securitydevopsweb-application

Updated Jul 15, 2026

high

CVE-2026-24240 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24240pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

high

CVE-2026-24242 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause server-side request forgery. A successful exploit of this vulnerability might lead to information disclosure.

CVE-2026-24242pythonlinuxdevopsinformation-disclosure

Updated Jul 15, 2026

high

CVE-2026-24243 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24243pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

high

CVE-2026-24244 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24244pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

high

CVE-2026-24245 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24245pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

highEPSS 0.002

CVE-2026-24246 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of dynamically managed code resources. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24246pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

highEPSS 0.002

CVE-2026-24247 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24247pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

highEPSS 0.002

CVE-2026-24248 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of code generation. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24248pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

highEPSS 0.002

CVE-2026-24249 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24249pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

highEPSS 0.002

CVE-2026-24250 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper validation of allowed inputs. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24250pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

highEPSS 0.002

CVE-2026-24251 in NVIDIA Megatron Bridge

NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of dynamically managed code resources. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.

CVE-2026-24251pythonlinuxdevopsremote-code-execution

Updated Jul 15, 2026

highEPSS 0.008

CVE-2026-24264 in NVIDIA Triton Inference Server

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause improper handling of highly compressed data. A successful exploit of this vulnerability might lead to denial of service.

CVE-2026-24264linuxdevopsinput-validationdenial-of-service

Updated Jul 15, 2026

mediumEPSS 0.007

CVE-2026-24266 in NVIDIA Triton Inference Server

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a use-after-free issue. A successful exploit of this vulnerability might lead to denial of service.

CVE-2026-24266linuxdevopsdenial-of-servicememory-corruption

Updated Jul 15, 2026

mediumEPSS 0.002

CVE-2026-40467 in GNU awk

Use After Free vulnerability has been found in "io.c" program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.

CVE-2026-40467linuxdenial-of-servicememory-corruption

Updated Jul 15, 2026

lowEPSS 0.002

CVE-2026-40468 in GNU awk

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.

CVE-2026-40468linuxinput-validationdenial-of-servicememory-corruption

Updated Jul 15, 2026

mediumEPSS 0.002

CVE-2026-40469 in GNU awk

Integer overflow vulnerability has been found in "builtin.c" program file of gawk (do_sub() routine). This issue could be used to overwrite gawk heap metadata and objects causing the program to crash. It affects 32-bit builds of gawk in versions 5.4.0 and below.

CVE-2026-40469linuxinput-validationdenial-of-servicememory-corruption

Updated Jul 15, 2026

mediumEPSS 0.003

CVE-2026-40553 in GNU awk

Buffer overflow vulnerability has been found in "extension/readdir.c" program file of gawk (ftype() routine). This issue could be used to crash the program and potentially to achieve code execution, although the latter has not been confirmed to be feasible. It affects gawk in versions 5.4.0 and below.

CVE-2026-40553linuxdenial-of-servicememory-corruption

Updated Jul 15, 2026

highEPSS 0.005

CVE-2026-44941 in libzypp

A relative path traversal in the "keyhint" option in repomd.xml parsing of libzypp before 17.38.12 can be used by attackers able to supply a malicious repository to inject or overwrite files in the target system as root.

CVE-2026-44941linuxsupply-chainpath-traversalfile-write

Updated Jul 14, 2026

mediumEPSS 0.001

CVE-2026-40257 op-tee vulnerability

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 3.21.0 and prior to version 4.11.0, the ARM Crypto Extensions accelerated SHA-3 implementation has an off-by-one error that can cause a massive heap overflow that corrupts all TEE kernel memory following the hash state. This affects all platforms built with `CFG_CRYPTO_WITH_CE82=y` (ARMv8.2+ with SHA3 Crypto Extensions). Version 4.11.0 contains a patch. As a workaround, disable SHA3 Crypto Extensions with `CFG_CRYPTO_WITH_CE82=n`.

CVE-2026-40257browserlinux

Updated Jul 13, 2026

lowEPSS 0.001

CVE-2026-41434 op-tee vulnerability

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 3.10.0 and prior to version 4.11.0, an unbounded recursion can crash the PKCS#11 TA. Version 4.11.0 contains a patch. No known workarounds are available.

CVE-2026-41434linux

Updated Jul 13, 2026

criticalEPSS 0.007

CVE-2026-9181 arcgis server vulnerability

Esri ArcGIS Server contains a directory traversal vulnerability. ArcGIS Enterprise on Kubernetes is not impacted. An unauthenticated attacker could exploit this issue by sending crafted path parameters. Successful exploitation could allow overwriting sensitive files on the system. Abuse of this issue can allow full administrative access to ArcGIS Server, with high impact to confidentiality, integrity, and availability. This issue impacts all versions of ArcGIS Server on Windows and Linux 12.0 and prior. This issue does not impact ArcGIS Enterprise for Kubernetes.

CVE-2026-9181linuxwindowscloud-securityweb-application

Updated Jul 13, 2026