Linux kernel Open vSwitch datapath memory corruption memory corruption flaw (CVE-2026-64531)
Vulnerability
Summary
Hide ▲
Show ▼
CVE-2026-64531 in the Linux kernel Open vSwitch datapath lets ordinary local users escalate to root on a broad set of default-configured distributions. A public exploit is available, with pre-built records for roughly 800 kernel builds, and the upstream fix is already in stable trees. The flaw is tracked as OVSwrap and affects systems where the OVS kernel datapath and unprivileged user namespaces are enabled.
Related Happenings
Linux kernel Dirty Frag local root escalation privilege-escalation flaw
Vulnerability
H score30
First: 08.05.2026 10:45
Last: 08.05.2026 10:45
Sources 1
About this happening:
Dirty Frag is a newly disclosed Linux kernel zero-day that can give local attackers root privileges on most major Linux distributions. The flaw is anchored in the...
Linux kernel Dirty Frag local root escalation privilege-escalation flaw
VulnerabilityAbout this happening: Dirty Frag is a newly disclosed Linux kernel zero-day that can give local attackers root privileges on most major Linux distributions. The flaw is anchored in the...
Linux distributions mitigation advisories for CVE-2026-31431
Advisory/Mitigation
H score39
First: 30.04.2026 12:24
Last: 30.04.2026 12:24
Sources 1
About this happening:
Multiple Linux distributions released advisories for CVE-2026-31431, adding mitigation guidance for a Linux kernel local privilege escalation that can let an unprivile...
Linux distributions mitigation advisories for CVE-2026-31431
Advisory/MitigationAbout this happening: Multiple Linux distributions released advisories for CVE-2026-31431, adding mitigation guidance for a Linux kernel local privilege escalation that can let an unprivile...
Linux kernel AppArmor confused deputy vulnerabilities CrackArmor security flaw
Vulnerability
H score56
First: 13.03.2026 10:18
Last: 13.03.2026 10:18
Sources 1
About this happening:
Researchers disclosed CrackArmor, nine confused deputy flaws in the Linux kernel's AppArmor module that can let unprivileged users bypass protections, gain root*...
Linux kernel AppArmor confused deputy vulnerabilities CrackArmor security flaw
VulnerabilityAbout this happening: Researchers disclosed CrackArmor, nine confused deputy flaws in the Linux kernel's AppArmor module that can let unprivileged users bypass protections, gain root*...
Timeline
-
05.08.2026 14:43 1 articles · 3h ago
Asim Manizada reports the Open vSwitch datapath flaw to kernel and OVS maintainers
Initial DisclosureSecurity researcher Asim Manizada reported the Open vSwitch kernel datapath memory corruption flaw to [email protected] and the Open vSwitch maintainers on June 19, 2026.
Show sources
- New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch — thehackernews.com — 05.08.2026 14:43
-
05.08.2026 14:43 1 articles · 3h ago
Stable trees ship the first fixed Linux releases for OVSwrap
Mitigation Patch UpdateThe upstream fix for the Open vSwitch datapath flaw shipped in stable trees on July 24, 2026, starting the remediation path for downstream kernels that need to backport CVE-2026-64531 fixes.
Show sources
- New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch — thehackernews.com — 05.08.2026 14:43
-
05.08.2026 14:43 2 articles · 3h ago
Asim Manizada publicly discloses OVSwrap and the root exploit path
Technical Analysis UpdateAsim Manizada publicly disclosed OVSwrap on July 28, 2026, describing a Linux kernel Open vSwitch datapath memory corruption flaw that lets ordinary local users gain root on affected default-configured distributions and noting that the public exploit ships with pre-built records for roughly 800 kernel builds.
Show sources
- New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch — thehackernews.com — 05.08.2026 14:43
- New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch — thehackernews.com — 05.08.2026 14:43