CWE-279
CVEs classified under CWE-279, newest first.
4 CVEsRSS
CVE-2026-80929High· 7.0kernel: sysctl: move the "cad_pid" entry from pid_table[] to kern_reboot_table[] (CVE-2026-80929)
A flaw was found in the Linux kernel. A non-root user can exploit a vulnerability in the `sysctl` mechanism, specifically related to the `cad_pid` entry. By unsharing process ID (PID) and user namespaces, a local attacker can modify this g…
CVE-2026-46388Medium· 4.4osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework
osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, an unprivileged attacker can read the contents of an osquery file carve until the carve completes and the temporary files ar…
CVE-2026-4948Medium· 5.5A flaw was found in firewalld
A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-authorizing two runtime D-Bus (Desktop Bus) setters, setZoneSettings2 and setPolicySettings. This mis-authorization allows the user to modify …
CVE-2025-12801Medium· 6.5A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time
A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows th…