Executive brief
The Linux Kernel's IPv6 networking component contains a vulnerability that allows an attacker with local access to gain elevated system privileges. This vulnerability has been actively exploited in real-world attacks and affects multiple enterprise Linux distributions, creating significant risk for organizations running vulnerable systems.
Technical details
The vulnerability is an unspecified privilege escalation flaw in the Linux Kernel's IPv6 networking subsystem. The exact nature of the vulnerability class and root cause are not disclosed in the available advisory information. Exploitation requires local access to the affected system. Successful exploitation allows an attacker to escalate privileges and gain root or elevated access. The vulnerability has been observed exploited in active attacks, indicating public exploitation techniques are available.
Affected products
- Linux Linux Kernel <UNKNOWN>
- SUSE SUSE Linux Enterprise
- Red Hat Red Hat Enterprise Linux
Timeline
- 2026-08-27: disclosed
- exploited: Observed exploited in the wild