CVE-2025-71239

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/03/2026
Last modified:
18/03/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> audit: add fchmodat2() to change attributes class<br /> <br /> fchmodat2(), introduced in version 6.6 is currently not in the change<br /> attribute class of audit. Calling fchmodat2() to change a file<br /> attribute in the same fashion than chmod() or fchmodat() will bypass<br /> audit rules such as:<br /> <br /> -w /tmp/test -p rwa -k test_rwa<br /> <br /> The current patch adds fchmodat2() to the change attributes class.

Impact