[UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen
Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen, möglicherweise um Daten zu manipulieren oder offenzulegen, Sicherheitsmaßnahmen zu umgehen oder einen Denial-of-Service-Zustand zu verursachen.
CSIRTS triage
- What
- Multiple vulnerabilities can be exploited to conduct unspecified attacks.
- Who is affected
- Users of the affected Linux Kernel versions.
- Urgency
- Remediation is medium urgency due to the potential for various impacts.
- Action
- Apply the latest patches for the Linux Kernel.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch Kernel
Get an email when a new Kernel advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2427
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-641870.11% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 2% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-641880.12% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 2% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-641890.10% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 1% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-641900.14% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 4% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-641910.13% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 3% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-641920.12% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 2% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-642050.13% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 3% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-642060.26% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 18% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-642070.11% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 2% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-64187 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-64188 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-64189 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-64190 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-64191 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-64192 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-64205 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-64206 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-64207 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- unknownMultiples vulnérabilités dans le noyau Linux de Debian LTS (11 septembre 2026)cert-fr-avis
- unknownMultiples vulnérabilités dans le noyau Linux de SUSE (11 septembre 2026)cert-fr-avis
- unknownMultiples vulnérabilités dans le noyau Linux de Red Hat (11 septembre 2026)cert-fr-avis
- unknownexploitedUSN-8728-1: Linux kernel (GCP) vulnerabilitiesubuntu
- unknownexploitedUSN-8727-1: Linux kernel (OEM) vulnerabilitiesubuntu
- unknownexploitedUSN-8726-1: Linux kernel vulnerabilitiesubuntu
- unknownMultiples vulnérabilités dans le noyau Linux de Red Hat (04 septembre 2026)cert-fr-avis
- unknownRedHat Linux Kernel Multiple Vulnerabilitieshkcert
- unknownMultiples vulnérabilités dans le noyau Linux de Red Hat (28 août 2026)cert-fr-avis
- unknownMultiples vulnérabilités dans le noyau Linux de SUSE (28 août 2026)cert-fr-avis
- unknownMultiple vulnerabilities in Debian LTS Linux kernel (August 14, 2026)cert-fr-avis
- unknownexploitedMultiple vulnerabilities in SUSE Linux kernel (August 14, 2026)cert-fr-avis
Recent advisories for Linux Kernel
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- unknownCVE-2026-89773: In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Skip Upda…nvd · 2026-09-11
- unknownCVE-2026-89772: In the Linux kernel, the following vulnerability has been resolved: btrfs: write-protect folio…nvd · 2026-09-11
- unknownCVE-2026-89771: In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix subbuf re…nvd · 2026-09-11
- unknownCVE-2026-89770: In the Linux kernel, the following vulnerability has been resolved: iomap: don't free integrit…nvd · 2026-09-11
- unknownCVE-2026-89769: In the Linux kernel, the following vulnerability has been resolved: clocksource/drivers/nxp-pi…nvd · 2026-09-11
- unknownCVE-2026-89768: In the Linux kernel, the following vulnerability has been resolved: fs: fix user path of neste…nvd · 2026-09-11
More from CERT-Bund (BSI) Security Advisories
- high[UPDATE] [hoch] Red Hat Enterprise Linux (postgis, virtuoso-opensource): Mehrere Schwachstellen2026-09-11
- medium[UPDATE] [mittel] Red Hat Enterprise Linux: Mehrere Schwachstellen2026-09-11
- medium[UPDATE] [mittel] Linux Kernel: Schwachstelle ermöglicht Denial of Service2026-09-11
- medium[UPDATE] [mittel] Linux Kernel: Mehrere Schwachstellen2026-09-11
- high[UPDATE] [hoch] OpenSSL: Mehrere Schwachstellen2026-09-11