SCTPhantom (CVE-2026-64564) Local Root Exploit: Status and Fixes for CloudLinux
SCTPhantom (CVE-2026-64564) is a vulnerability in the Linux kernel's SCTP code that lets a local unprivileged user become...
Read More
Blog Series
SCTPhantom (CVE-2026-64564) is a vulnerability in the Linux kernel's SCTP code that lets a local unprivileged user become...
Read More
VsockDrop (CVE-2026-53365) lets an unprivileged local user become root. We checked every CloudLinux version, and none is exposed...
Read More
RtabRace (CVE-2026-68138) is a Linux kernel race in the traffic-control subsystem that lets an unprivileged local user corrupt...
Read More
BadGarbage (CVE-2026-53361) is a Linux kernel race condition that lets any local user, including a process inside a...
Read More
OVSwrap (CVE-2026-64531): a Linux kernel flaw giving local root on CloudLinux 9, 10 and CloudLinux for Ubuntu. No...
Read More
RefluXFS (CVE-2026-64600) is a Linux kernel Local Privilege Escalation in the XFS filesystem, present in every kernel from...
Read More
GhostLock (CVE-2026-43499) is a use-after-free bug in the Linux kernel's futex priority-inheritance code that lets any unprivileged local...
Read More
Bad epoll (CVE-2026-46242) is a use-after-free bug in the Linux kernel's epoll subsystem that lets an unprivileged local...
Read More
Januscape (CVE-2026-53359) is a race condition in the Linux kernel's KVM/x86 memory management. A malicious virtual machine can...
Read More
DirtyClone (CVE-2026-43503) is a new public proof-of-concept for the same shared-fragment-marker kernel bug behind Dirty Frag and Fragnesia,...
Read More