---
id: CVE-2026-53367
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  selinux: fix avdcache auditing

  The per-task avdcache was incorrectly saving and reusing the
  audited vector computed by avc_audit_required() rather than
  recomputing bas…
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  selinux: fix avdcache auditing

  The per-task avdcache was incorrectly saving and reusing the
  audited vector computed by avc_audit_required() rather than
  recomputing bas…
severity: none
published: '2026-07-19'
updated: '2026-07-19'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-53367'
references:
  - url: 'https://git.kernel.org/stable/c/bce6a32bc888dfebb6a7d4dee454228b71ed8369'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/e3e722ea88e051ae5361dc540c01ba18f87b5ffd'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/f92d542577db878acfd21cc18dab23d03023b217'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
epss: 0.00124
epssPercentile: 0.02452
ingestedAt: '2026-07-19T14:31:07.138Z'
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

selinux: fix avdcache auditing

The per-task avdcache was incorrectly saving and reusing the
audited vector computed by avc_audit_required() rather than
recomputing based on the currently requested permissions and
distinguishing the denied versus allowed cases. As a result,
some permission checks were not being audited, e.g.
directory write checks after a previously cached directory
search check.

[PM: line wrap tweaks]

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
