CYBER CODE RED

Get real-time updates on Telegram

P4Verified

CVE-2026-90013: Linux 2.6.30

CVE-2026-90013 affects azl3 kernel 6.6.150.1-1 on Azure Linux 3.0. CVSS 3.1 base score 7.8 (HIGH, Microsoft Security Response Center). EPSS 0.0017 (percentile 0.0576), scored 06-Oct-2026. Fixed version: 7.2.6-1. Fixed version: 6.12.112-r0. Fixed version: 6.18.53-r0.

Affected technology

Linux · 577b785f55168d5acb3d123ba41bfe8d7981e044 to before 97ceaffbd672449ad7ead5ae8788dce16374b0c1, 577b785f55168d5acb3d123ba41bfe8d7981e044 to before d0f37d77b9b4b241e0b30ef2562f6353cbda3bec, 577b785f55168d5acb3d123ba41bfe8d7981e044 to before 64a41f4a9a968f54f3792399aa4d2a9fdb23b0a5, 577b785f55168d5acb3d123ba41bfe8d7981e044 to before f2951ebd15c36a1ea4820a7f0cbb0b5f1c028b73
Linux

Linux · 2.6.30
Linux

Component: Not specified by the source
Function: called:
File: kernel/trace/trace.c

Attack conditions (Source advisory, CVSS 3.1): Local · Low privileges required · No user interaction required

What an attacker can do

A local attacker with low privileges could trigger a use-after-free error. Source advisory’s CVSS 3.1 assessment (base score 7.8/10) rates confidentiality, integrity and availability impact as high. The description does not state a further attacker outcome.

Published

Product
azl3 kernel 6.6.150.1-1 on Azure Linux 3.0
CCR priority
31.2 /100 (P4)
CVSS 3.1
7.8 /10 · CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U · Microsoft Security Response Center
EPSS
0.0017 · percentile 0.05825 · 2026-10-10
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-90013.html