Critical OVSwrap Linux Kernel Vulnerability Enables Local Privilege Escalation via Open vSwitch
A critical memory corruption flaw (CVE-2026-64531) in the Linux kernel's Open vSwitch datapath allows local users to escalate privileges to root without requiring special permissions. The vulnerability affects multiple Linux distributions and includes a public exploit targeting 800 kernel builds, with patches available in recent kernel versions.
A memory corruption flaw in the Linux kernel's Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured distributions, and a public exploit ships with pre-built records for roughly 800 kernel builds.
The vulnerability, tracked as CVE-2026-64531 (CVSS score: 7.8) and codenamed OVSwrap by its discoverer, was disclosed by security researcher Asim
*** END OF TRANSMISSION ***