In the Linux kernel, the following vulnerability has been resolved:
selinux: fix avdcache auditing
The per-task avdcache was incorrectly saving and reusing the
audited vector computed by avc_audit_required() rather than
recomputing based on the currently requested permissions and
distinguishing the denied versus allowed cases. As a result,
some permission checks were not being audited, e.g.
directory write checks after a previously cached directory
search check.
[PM: line wrap tweaks]
References
Configurations
Configuration 1 (hide)
|
History
29 Jul 2026, 16:55
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.18:-:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.18:rc7:*:*:*:*:*:* |
|
| References | () https://git.kernel.org/stable/c/bce6a32bc888dfebb6a7d4dee454228b71ed8369 - Patch | |
| References | () https://git.kernel.org/stable/c/e3e722ea88e051ae5361dc540c01ba18f87b5ffd - Patch | |
| References | () https://git.kernel.org/stable/c/f92d542577db878acfd21cc18dab23d03023b217 - Patch | |
| First Time |
Linux linux Kernel
Linux |
|
| CWE | NVD-CWE-noinfo |
19 Jul 2026, 09:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-19 09:17
Updated : 2026-07-29 16:55
NVD link : CVE-2026-53367
Mitre link : CVE-2026-53367
CVE.ORG link : CVE-2026-53367
JSON object : View
Products Affected
linux
- linux_kernel
CWE
