CVE-2026-53367

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
19/07/2026
Last modified:
29/07/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> selinux: fix avdcache auditing<br /> <br /> The per-task avdcache was incorrectly saving and reusing the<br /> audited vector computed by avc_audit_required() rather than<br /> recomputing based on the currently requested permissions and<br /> distinguishing the denied versus allowed cases. As a result,<br /> some permission checks were not being audited, e.g.<br /> directory write checks after a previously cached directory<br /> search check.<br /> <br /> [PM: line wrap tweaks]

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.17.10 (including) 6.18 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.18.1 (including) 6.18.30 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.19 (including) 7.0.7 (excluding)
cpe:2.3:o:linux:linux_kernel:6.18:-:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.18:rc7:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:*