CVE-2026-53367
Description
In the Linux kernel, the following vulnerability has been resolved:
selinux: fix avdcache auditing
The per-task avdcache was incorrectly saving and reusing the
audited vector computed by avc_audit_required() rather than
recomputing based on the currently requested permissions and
distinguishing the denied versus allowed cases. As a result,
some permission checks were not being audited, e.g.
directory write checks after a previously cached directory
search check.
[PM: line wrap tweaks]
Metadata
Severity & Metrics
No CVSS data available.
Affected products (2)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| Linux | Linux | — | dde3a5d0f4dce1d1a6095e6b8eeb59b75d28fb3b < e3e722ea88e051ae5361dc540c01ba18f87b5ffd, dde3a5d0f4dce1d1a6095e6b8eeb59b75d28fb3b < bce6a32bc888dfebb6a7d4dee454228b71ed8369, dde3a5d0f4dce1d1a6095e6b8eeb59b75d28fb3b < f92d542577db878acfd21cc18dab23d03023b217, 21879b76831fab52f6a615c531f86412c8d3c827 … |
| Linux | Linux | — | 6.18, 0 < 6.18, 6.18.30 ≤ 6.18.*, 7.0.7 ≤ 7.0.* … |
References (3)