[NEW] [high] Linux Kernel: Multiple vulnerabilities
An attacker can exploit multiple vulnerabilities in Linux Kernel to conduct an unspecified attack, including potentially arbitrary code execution, privilege escalation, information disclosure, data manipulation, or denial-of-service conditions.
CSIRTS triage
- What
- Multiple vulnerabilities in Linux Kernel allow arbitrary code execution, privilege escalation, information disclosure, data manipulation, and denial-of-service.
- Who is affected
- All Linux systems using affected kernel versions are at risk.
- Urgency
- Critical; kernel vulnerabilities have broad impact and enable multiple attack vectors.
- Action
- Update to the latest patched Linux kernel version for your distribution.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch Linux Kernel
Get an email when a new Linux Kernel advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2730
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-680830.45% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 37% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-680840.17% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 7% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-680850.25% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 17% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-680860.15% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 5% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-680870.17% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 6% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-680880.18% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 7% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-680890.17% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 6% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-680900.18% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 7% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-680910.27% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 19% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-680920.17% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 6% of all EPSS-scored CVEs.
Referenced CVEs
+12 more CVEs referenced in this advisory.
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- highCVE-2026-68130: ksmbd: defer destroy_previous_session() until after NTLM authenticationmsrc
- criticalCVE-2026-68127: ila: reload IPv6 header after pskb_may_pull in checksum adjustmsrc
- mediumCVE-2026-68086: mm/khugepaged: write all dirty file folios when collapsingmsrc
- mediumCVE-2026-68105: drm/amdgpu: Fix kernel panic during driver load failuremsrc
- mediumCVE-2026-68113: drm/amdgpu/gfx12: replace BUG_ON() with WARN_ON()msrc
- highCVE-2026-68104: drm/amdgpu: invoke pm_genpd_remove() before freeing genpdmsrc
- mediumCVE-2026-68096: audit: fix recursive locking deadlock in audit_dupe_exe()msrc
- mediumCVE-2026-68102: drm/amdgpu: fix aperture mapping leakmsrc
- mediumCVE-2026-68106: drm/amdgpu: fix division by zero with invalid uvd dimensionsmsrc
- mediumCVE-2026-68103: drm/amdgpu: reject mapping a reserved doorbell to a new queuemsrc
- mediumCVE-2026-68112: drm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON()msrc
- criticalCVE-2026-68131: rbd: Reset positive result codes to zero in object map update pathmsrc
Recent advisories for Linux Kernel
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- unknownCVE-2026-74579: In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_payload: fi…nvd · 2026-08-17
- highCVE-2026-74578: In the Linux kernel, the following vulnerability has been resolved: crypto: algif_skcipher - f…nvd · 2026-08-16
- unknownCVE-2026-74577: In the Linux kernel, the following vulnerability has been resolved: net: mpls: initialize rtm_…nvd · 2026-08-15
- highCVE-2026-74576: In the Linux kernel, the following vulnerability has been resolved: mm/slab: prevent unbounded…nvd · 2026-08-15
- highCVE-2026-74575: In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Prevent XDoma…nvd · 2026-08-15
- highCVE-2026-74574: In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix fdev …nvd · 2026-08-15
More from CERT-Bund (BSI) Security Advisories
- high[NEW] [high] GStreamer: Multiple Vulnerabilities2026-08-17
- high[NEW] [high] Golang Go: Multiple vulnerabilities2026-08-17
- medium[NEW] [medium] Apache Struts: Multiple vulnerabilities2026-08-17
- high[NEW] [high] PostgreSQL: Multiple vulnerabilities2026-08-17
- high[UPDATE] [high] Oracle PeopleSoft: Multiple Vulnerabilities2026-08-17