Linux kernel CIFS subsystem CIFSwitch local privilege escalation privilege-escalation flaw
Vulnerability
Updated: 30.05.2026 17:16
· First: 30.05.2026 17:16
· 📰 1 src / 1 articles
· H score: 15
The Linux kernel CIFS subsystem has a newly disclosed CIFSwitch local privilege-escalation flaw that can let an unprivileged attacker reach root on vulnerable systems. The issue affects Linux distributions shipping vulnerable kernel CIFS and cifs-utils 6.14 and higher combinations, and it has an upstream patch that validates cifs.spnego request origins. A published PoC exploit raises urgency for validation and remediation.