logo

Linux Kernel CVE-2026-23111 Enables Local Privilege Escalation via nftables

ID: 4535a997-fded-5898-878b-9a7f9157b377

STIX ID: report--4535a997-fded-5898-878b-9a7f9157b377

Feed Name: ThreatCluster

Threat Score
74/100

Date Published: 2026-06-08

Date Updated: 2026-06-10

...
...

CVE-2026-23111 is a use-after-free vulnerability in the Linux kernel nftables subsystem that enables local privilege escalation to root on widely used distributions (Debian Bookworm/Trixie, Ubuntu 22.04/24.04); it was patched upstream on 2026-02-05 and a public proof-of-concept was released on 2026-06-09, so affected systems should apply the patch and monitor for signs of local exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.