Linux SCTP use-after-free flaw (CVE-2026-64564)
Vulnerability
Summary
Hide ▲
Show ▼
CVE-2026-64564 in Linux's SCTP networking code can let local users reach root on SCTP-reachable hosts, and lab testing also showed a container escape path. The flaw was publicly disclosed on August 6, while fixes had already shipped in stable kernels 7.1.6, 6.18.42, 6.12.101 and 6.6.148 on August 3. No public exploit code had surfaced at the time of publication, but systems running older kernels remain exposed until they update or remove SCTP access. The bug has existed since 2008, making it a long-lived privilege-escalation risk in environments that still allow SCTP traffic.
Related Happenings
Linux kernel Dirty Frag local root escalation privilege-escalation flaw
Vulnerability
H score30
First: 08.05.2026 10:45
Last: 08.05.2026 10:45
Sources 1
About this happening:
Dirty Frag is a newly disclosed Linux kernel zero-day that can give local attackers root privileges on most major Linux distributions. The flaw is anchored in the...
Linux kernel Dirty Frag local root escalation privilege-escalation flaw
VulnerabilityAbout this happening: Dirty Frag is a newly disclosed Linux kernel zero-day that can give local attackers root privileges on most major Linux distributions. The flaw is anchored in the...
CISA KEV action for CVE-2026-31431 and FCEB remediation
Public Sector Action
H score37
First: 03.05.2026 09:26
Last: 03.05.2026 09:26
Sources 1
About this happening:
CISA added CVE-2026-31431 to its KEV catalog, putting Federal Civilian Executive Branch (FCEB) agencies on notice to remediate an actively exploited Linux privilege-es...
CISA KEV action for CVE-2026-31431 and FCEB remediation
Public Sector ActionAbout this happening: CISA added CVE-2026-31431 to its KEV catalog, putting Federal Civilian Executive Branch (FCEB) agencies on notice to remediate an actively exploited Linux privilege-es...
Linux distributions mitigation advisories for CVE-2026-31431
Advisory/Mitigation
H score39
First: 30.04.2026 12:24
Last: 30.04.2026 12:24
Sources 1
About this happening:
Multiple Linux distributions released advisories for CVE-2026-31431, adding mitigation guidance for a Linux kernel local privilege escalation that can let an unprivile...
Linux distributions mitigation advisories for CVE-2026-31431
Advisory/MitigationAbout this happening: Multiple Linux distributions released advisories for CVE-2026-31431, adding mitigation guidance for a Linux kernel local privilege escalation that can let an unprivile...
Timeline
-
07.08.2026 14:10 1 articles · 2h ago
Linux stable kernels ship the SCTP use-after-free fix
Mitigation Patch UpdateLinux stable kernels 7.1.6, 6.18.42, 6.12.101 and 6.6.148 close the SCTP use-after-free in Linux's networking code, giving operators a fixed build to replace vulnerable kernels on SCTP-reachable hosts.
Show sources
- 18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers — thehackernews.com — 07.08.2026 14:10
-
07.08.2026 14:10 1 articles · 2h ago
CVE-2026-64564 is disclosed as SCTPhantom
Initial DisclosureCVE-2026-64564 is publicly disclosed as SCTPhantom, and the flaw traces back to Linux 2.6.25 in 2008, making it a long-lived local privilege-escalation issue in Linux's SCTP networking code.
Show sources
- 18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers — thehackernews.com — 07.08.2026 14:10
-
07.08.2026 14:10 2 articles · 2h ago
Tencent reports root escalation and container escape on SCTP-reachable Linux kernels
Victim Impact UpdateTencent Zhuque Lab reports that the SCTP use-after-free can yield root on tested Debian 13, Ubuntu 24.04, Rocky Linux 9, RHEL 9 and OpenCloudOS kernels, and says its container-escape test succeeded without CAP_NET_ADMIN or CAP_SYS_ADMIN while keeping the default seccomp profile. As of August 7, no public exploit code had surfaced, CISA's KEV catalog had no entry, and NVD had not assigned a score or weakness classification.
Show sources
- 18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers — thehackernews.com — 07.08.2026 14:10
- 18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers — thehackernews.com — 07.08.2026 14:10