ZDI-26-250: Linux Kernel Analog Device Driver Improper Validation of Array Index Local Privilege Escalation Vulnerability

Kurzinfo

Metadaten

  • Original (extern): Link oeffnen
  • Veroeffentlicht: 2026-03-31 05:00 UTC
  • Importiert: 2026-05-15 04:49 UTC
  • Quelle-ID: zdi_pub
  • uid_hash: b935f8c614e00d6f35128046fc401a035239a8c36538ffb9ad46e52c54c14017

Inhalt

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to execute high-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.2. The following CVEs are assigned: CVE-2026-23092.

Verknuepfte CVEs

CVE-ID CVE-Schwere CVSS (CVE.org) EPSS EPSS-Pctl Veroeffentlicht (CVE.org)

CVE-2026-23092

- - - -

Quellen-Details

Bezeichnung Name Kategorie Tags Zielgruppe Sprache Feed-URL
Zero Day Initiative (Published)

zdi_pub

threat_intel - de https://www.zerodayinitiative.com/rss/published/