SECURITY·중요도 8·2026. 08. 05.·The Hacker News

New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch

── KO ──────────────────

OVSwrap 취약점으로 로컬 사용자가 Linux 커널에서 루트 권한을 얻을 수 있습니다.

Linux 커널의 Open vSwitch 데이터 경로에서 메모리 손상 취약점이 발견되어, 기본 구성된 여러 배포판에서 일반 로컬 사용자가 루트 권한을 얻을 수 있는 경로를 제공합니다. 이 취약점은 CVE-2026-64531로 추적되며, CVSS 점수는 7.8입니다. 발견자는 보안 연구원 Asim으로, 공개된 익스플로잇에는 약 800개의 커널 빌드에 대한 사전 구축된 기록이 포함되어 있습니다.


── EN ──────────────────

The OVSwrap vulnerability allows local users to gain root access via Open vSwitch in Linux kernel.

A memory corruption flaw in the Linux kernel's Open vSwitch datapath has been discovered, enabling ordinary local users to gain root access on a wide range of default-configured distributions. This vulnerability is tracked as CVE-2026-64531, with a CVSS score of 7.8. It was disclosed by security researcher Asim, and a public exploit includes pre-built records for approximately 800 kernel builds.

원문 보기 →목록으로