Multiple Linux Kernel Vulnerabilities Disclosed on September 14, 2026
Article Content
- •Multiple vulnerabilities disclosed in the Linux Kernel on September 14, 2026.
- •Attackers can exploit these flaws to escalate privileges or disclose sensitive information.
- •Linux has issued updates to correct these vulnerabilities.
On September 14, 2026, a series of vulnerabilities affecting the Linux Kernel were disclosed, allowing local attackers to escalate privileges or disclose sensitive information. The vulnerabilities include use-after-free issues, race conditions, and uninitialized memory access, impacting various subsystems such as Open vSwitch, TLS Protocol, and the Crypto Subsystem. Attackers must have low or high privileges to exploit these vulnerabilities, depending on the specific flaw. Linux has released updates to mitigate these vulnerabilities. The vulnerabilities were reported between December 2025 and June 2026, with the public advisories released on the same day. Affected systems include various installations of the Linux Kernel. The vulnerabilities could potentially allow attackers to execute arbitrary code in the context of the kernel. The coordinated public release of advisories indicates a significant threat to users of the affected systems.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (34)
Following this threat?
Track Trend Micro Zero Day Initiative in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows…