CYBERSECURITYTRACKER
TRACKING7,159 stories in this site build1,507 vulnerability news stories in this site build
Permanent story citation

New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 3886

As cited

Copy frozen at (site build).

vulnerabilities

New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch

A memory corruption vulnerability in the Linux kernel's Open vSwitch datapath (CVE-2026-64531, CVSS 7.8) allows local users to escalate privileges to root on default-configured systems. A public exploit includes pre-built records for approximately 800 kernel versions, expanding the practical attack surface.

Why it matters: Linux administrators running Open vSwitch on systems where local user access is possible face immediate root compromise risk; prioritize patching and review whether untrusted local users can access affected hosts.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch

A memory corruption vulnerability in the Linux kernel's Open vSwitch datapath (CVE-2026-64531, CVSS 7.8) allows local users to escalate privileges to root on default-configured systems. A public exploit includes pre-built records for approximately 800 kernel versions, expanding the practical attack surface.

Why it matters: Linux administrators running Open vSwitch on systems where local user access is possible face immediate root compromise risk; prioritize patching and review whether untrusted local users can access affected hosts.

VendorsLinux
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary