CVE-2026-53362: Linux Kernel Unspecified Vulnerability
Actively exploited. At least one CVE in this advisory is listed in the CISA Known Exploited Vulnerabilities catalog — exploitation has been observed in the wild. Treat remediation as urgent.
Linux Kernel contains an unspecified vulnerability that can allow for privilege escalation via IPv6 networking subsystem. This vulnerability can impact multiple products, including but not limited to Suse, Red Hat, and other products using Linux.
CSIRTS triage
- What
- Linux kernel contains an unspecified vulnerability allowing privilege escalation through the IPv6 networking subsystem.
- Who is affected
- Linux systems across distributions (SUSE, Red Hat, others) using IPv6 or the affected kernel versions.
- Urgency
- Critical; actively exploited vulnerability on CISA's Known Exploited Vulnerabilities catalog requiring prioritized remediation.
- Action
- Apply Linux kernel patches from your distribution immediately.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch Linux Kernel
Get an email when a new Linux Kernel advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://nvd.nist.gov/vuln/detail/CVE-2026-53362
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Exploitation confirmedCVE-2026-53362Already exploited in the wild (CISA KEV) — the prediction phase is over. Patch now. Riskier than 41% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-53362 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- mediumexploited[NEW] [medium] Linux Kernel: Multiple vulnerabilitiescert-bund
- highexploitedCISA Adds Three Known Exploited Vulnerabilities to Catalogcisa
- unknownMultiple vulnerabilities in Debian LTS Linux kernel (July 31, 2026)cert-fr-avis
- unknownMultiple vulnerabilities in Debian LTS Linux kernel (July 24, 2026)cert-fr-avis
- unknownMultiple vulnerabilities in the SUSE Linux kernel (July 17, 2026)cert-fr-avis
- highexploitedCVE-2026-53362: ipv6: account for fraggap on the paged allocation pathmsrc
- unknownMultiple vulnerabilities in Microsoft Azure Linux (July 09, 2026)cert-fr-avis
- unknownDSA-6381-1 linux - security updatedebian
- unknownCVE-2026-53362: In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap …nvd
More from CISA Known Exploited Vulnerabilities
- criticalCVE-2026-82329: JFrog Artifactory Improper Authentication Vulnerability2026-09-02
- criticalCVE-2026-49869: Kestra OSS OS Command Injection Vulnerability2026-09-02
- criticalCVE-2026-59822: BerriAI LiteLLM Improper Authentication Vulnerability2026-09-02
- criticalCVE-2026-9586: Sangoma Switchvox SQL Injection Vulnerability2026-09-02
- criticalCVE-2026-83548: SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability2026-09-02