Find notable cyber news and cases, enriched with sources, timelines, and signals.

Linux SCTP use-after-free flaw (CVE-2026-64564)

Vulnerability
First reported
Last updated
Happening score
H score 26
1 unique sources, 1 articles

Summary

Hide ▲

CVE-2026-64564 in Linux's SCTP networking code can let local users reach root on SCTP-reachable hosts, and lab testing also showed a container escape path. The flaw was publicly disclosed on August 6, while fixes had already shipped in stable kernels 7.1.6, 6.18.42, 6.12.101 and 6.6.148 on August 3. No public exploit code had surfaced at the time of publication, but systems running older kernels remain exposed until they update or remove SCTP access. The bug has existed since 2008, making it a long-lived privilege-escalation risk in environments that still allow SCTP traffic.

Related Happenings

Linux kernel Dirty Frag local root escalation privilege-escalation flaw

Vulnerability
H score30 First: 08.05.2026 10:45 Last: 08.05.2026 10:45 Sources 1

About this happening: Dirty Frag is a newly disclosed Linux kernel zero-day that can give local attackers root privileges on most major Linux distributions. The flaw is anchored in the...

CISA KEV action for CVE-2026-31431 and FCEB remediation

Public Sector Action
H score37 First: 03.05.2026 09:26 Last: 03.05.2026 09:26 Sources 1

About this happening: CISA added CVE-2026-31431 to its KEV catalog, putting Federal Civilian Executive Branch (FCEB) agencies on notice to remediate an actively exploited Linux privilege-es...

Linux distributions mitigation advisories for CVE-2026-31431

Advisory/Mitigation
H score39 First: 30.04.2026 12:24 Last: 30.04.2026 12:24 Sources 1

About this happening: Multiple Linux distributions released advisories for CVE-2026-31431, adding mitigation guidance for a Linux kernel local privilege escalation that can let an unprivile...

Timeline

  1. 07.08.2026 14:10 2 articles · 6h ago

    Tencent reports root escalation and container escape on SCTP-reachable Linux kernels

    Victim Impact Update

    Tencent Zhuque Lab reports that the SCTP use-after-free can yield root on tested Debian 13, Ubuntu 24.04, Rocky Linux 9, RHEL 9 and OpenCloudOS kernels, and says its container-escape test succeeded without CAP_NET_ADMIN or CAP_SYS_ADMIN while keeping the default seccomp profile. As of August 7, no public exploit code had surfaced, CISA's KEV catalog had no entry, and NVD had not assigned a score or weakness classification.

    Show sources