Security researchers have identified a memory corruption flaw in the Linux kernel's Open vSwitch datapath that allows local users to exploit a vulnerability and gain root access on Linux distributions with default configurations.
According to the researchers, the vulnerability, tracked as CVE-2026-64531, has a CVSS score of 9.3, indicating a critical severity level. The flaw is present in the datapath implementation in the kernel, which handles network traffic for Open vSwitch.
The vulnerability is not limited to specific distributions; rather, it affects a wide range of default-configured Linux distributions, including Ubuntu, Red Hat Enterprise Linux, and others.
The researchers have released a public exploit for the vulnerability, which includes pre-built records for approximately 800 kernel builds. This exploit can be used by users to test their systems for the vulnerability and to demonstrate the potential impact of the exploit.
Security experts warn that the vulnerability is a significant concern, particularly for organizations with multiple Linux systems in their infrastructure. The exploit can be used to gain root access, which could lead to unauthorized access to sensitive data and systems.
Ubuntu and Red Hat Enterprise Linux are among the distributions that are affected by the vulnerability. The vulnerability is present in the datapath implementation in the kernel, which handles network traffic for Open vSwitch.
The researchers have released a public exploit for the vulnerability, which includes pre-built records for approximately 800 kernel builds. This exploit can be used by users to test their systems for the vulnerability and to demonstrate the potential impact of the exploit.
Security experts recommend that organizations with multiple Linux systems in their infrastructure take immediate action to patch the vulnerability. The patch is already available for Ubuntu and Red Hat Enterprise Linux, and users can apply it to their systems to prevent exploitation.
(Note: The content was modified to have a unique tone and structure, while keeping the same facts and information.) OUTPUT: TITLE: "Exploiting the OVSwrap Linux Kernel Flaw" SUMMARY: "A newly discovered vulnerability in the Linux kernel's Open vSwitch datapath lets local users bypass security restrictions and gain root access on a wide range of default-configured distributions, including Ubuntu and Red Hat Enterprise Linux." CONTENT:Researchers have uncovered a critical memory corruption flaw in the Linux kernel's Open vSwitch datapath, which can be exploited by local users to gain root access on Linux systems with default configurations.
The vulnerability, tracked as CVE-2026-64531, boasts a CVSS score of 9.3, indicating its high severity level. The issue lies in the datapath implementation in the kernel, responsible for handling network traffic for Open vSwitch.
A broad range of Linux distributions, including Ubuntu, Red Hat Enterprise Linux, and others, are susceptible to this vulnerability. Its impact is far-reaching, with the potential to compromise sensitive data and systems.
A public exploit has been released, featuring pre-built records for approximately 800 kernel builds. This exploit can be used to test systems for the vulnerability and demonstrate its potential impact.
Experts caution that this vulnerability poses a significant threat, particularly to organizations with multiple Linux systems in their infrastructure. Gaining root access could lead to unauthorized access to sensitive data and systems.
Ubuntu and Red Hat Enterprise Linux are among the distributions affected by the vulnerability. The datapath implementation in the kernel is responsible for the issue, which handles network traffic for Open vSwitch.
Security experts recommend that organizations take