CVE-2026-23241

In the Linux kernel, the following vulnerability has been resolved: audit: add missing syscalls to read class The "at" variant of getxattr() and listxattr() are missing from the audit read class. Calling getxattrat() or listxattrat() on a file to read its extended attributes will bypass audit rules such as: -w /tmp/test -p rwa -k test_rwa The current patch adds missing syscalls to the audit read class.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

20 May 2026, 19:45

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, la siguiente vulnerabilidad ha sido resuelta: auditoría: añadir llamadas al sistema faltantes a la clase de lectura La variante 'at' de getxattr() y listxattr() faltan de la clase de lectura de auditoría. Llamar a getxattrat() o listxattrat() en un archivo para leer sus atributos extendidos omitirá las reglas de auditoría tales como: -w /tmp/test -p rwa -k test_rwa El parche actual añade las llamadas al sistema faltantes a la clase de lectura de auditoría.
First Time Linux linux Kernel
Linux
CWE NVD-CWE-noinfo
References () https://git.kernel.org/stable/c/a2e8c144299c31d3972295ed80d4cb908daf4f6f - () https://git.kernel.org/stable/c/a2e8c144299c31d3972295ed80d4cb908daf4f6f - Patch
References () https://git.kernel.org/stable/c/ad37505ce869a8100ff23f24eea117de7a7516bf - () https://git.kernel.org/stable/c/ad37505ce869a8100ff23f24eea117de7a7516bf - Patch
References () https://git.kernel.org/stable/c/bcb90a2834c7393c26df9609b889a3097b7700cd - () https://git.kernel.org/stable/c/bcb90a2834c7393c26df9609b889a3097b7700cd - Patch
References () https://www.bencteux.fr/posts/missing_syscalls_audit/ - () https://www.bencteux.fr/posts/missing_syscalls_audit/ - Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

18 Mar 2026, 10:16

Type Values Removed Values Added
References
  • {'url': 'https://git.kernel.org/stable/c/33cdef7ecf6e5d2cf46a35ec26befce072a1aa07', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}
  • {'url': 'https://git.kernel.org/stable/c/5632d14b2f2a0ade2d0068e12676ebed67e3bb2a', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}
  • {'url': 'https://git.kernel.org/stable/c/ada4bba3afefee1fa68aa6bd1fd597ea4b11a16e', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}
  • {'url': 'https://git.kernel.org/stable/c/ed8efd623a5738e03de09dd74b505d0fb77b09f3', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}
  • {'url': 'https://git.kernel.org/stable/c/f5d27ad99fcaa7d965b344dd0b00d9413585c3cb', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}

17 Mar 2026, 10:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-17 10:16

Updated : 2026-05-20 19:45


NVD link : CVE-2026-23241

Mitre link : CVE-2026-23241

CVE.ORG link : CVE-2026-23241


JSON object : View

Products Affected

linux

  • linux_kernel