CVE-2026-23241

In the Linux kernel, the following vulnerability has been resolved: audit: add missing syscalls to read class The "at" variant of getxattr() and listxattr() are missing from the audit read class. Calling getxattrat() or listxattrat() on a file to read its extended attributes will bypass audit rules such as: -w /tmp/test -p rwa -k test_rwa The current patch adds missing syscalls to the audit read class.
CVSS

No CVSS.

Configurations

No configuration.

History

18 Mar 2026, 10:16

Type Values Removed Values Added
References
  • {'url': 'https://git.kernel.org/stable/c/33cdef7ecf6e5d2cf46a35ec26befce072a1aa07', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}
  • {'url': 'https://git.kernel.org/stable/c/5632d14b2f2a0ade2d0068e12676ebed67e3bb2a', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}
  • {'url': 'https://git.kernel.org/stable/c/ada4bba3afefee1fa68aa6bd1fd597ea4b11a16e', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}
  • {'url': 'https://git.kernel.org/stable/c/ed8efd623a5738e03de09dd74b505d0fb77b09f3', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}
  • {'url': 'https://git.kernel.org/stable/c/f5d27ad99fcaa7d965b344dd0b00d9413585c3cb', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}

17 Mar 2026, 10:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-17 10:16

Updated : 2026-03-18 10:16


NVD link : CVE-2026-23241

Mitre link : CVE-2026-23241

CVE.ORG link : CVE-2026-23241


JSON object : View

Products Affected

No product.

CWE

No CWE.