Get real-time updates on Telegram
CVE-2026-97594: Linux 5.19
CVE-2026-97594 affects azl3 kernel 6.6.157.1-1 on Azure Linux 3.0. CVSS 3.1 base score 7.8 (HIGH, Microsoft Security Response Center). EPSS 0.00159 (percentile 0.04386), scored 06-Oct-2026. Fixed version: 7.2.7-1. Fixed version: 6.12.112-r0. Fixed version: 6.18.53-r0.
Affected technology
Linux · b91c3e4ea756b12b7d992529226edce1cfd854d7 to before 4c37992b9668c4f37aae41dd95c369f7b6009915, b91c3e4ea756b12b7d992529226edce1cfd854d7 to before 379efd2ce8b26fd35feb13ccc2f671ff105a5052, b91c3e4ea756b12b7d992529226edce1cfd854d7 to before ba29c46ccfe3ebadfb8aa18149186c49f84b14f8, b91c3e4ea756b12b7d992529226edce1cfd854d7 to before 2c6dc792538260a8087ac5b22c31b3b8e47c85d6
Linux
Linux · 5.19
Linux
Component: Not specified by the source
File: security/landlock/fs.c
Attack conditions (Source advisory, CVSS 3.1): Local · Low privileges required · No user interaction required
What an attacker can do
Source advisory’s CVSS 3.1 assessment (base score 7.8/10) rates confidentiality, integrity and availability impact as high. The description does not specify what an attacker can achieve beyond these rated impacts.
- Product
- azl3 kernel 6.6.157.1-1 on Azure Linux 3.0
- CCR priority
- 31.2 /100 (P4)
- CVSS 3.1
- 7.8 /10 · CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H · Microsoft Security Response Center
- EPSS
- 0.00159 · percentile 0.04452 · 2026-10-10
- KEV
- no
Provenance
- FIRST EPSS daily exploit-probability · Source record · observed 2026-10-10 21:26:32.650893+00:00 UTC
- GitHub Advisory Database · Source record · observed 2026-10-04 06:01:24.332572+00:00 UTC
- Microsoft MSRC Security Update Guide (CVRF) · Source record · observed 2026-10-04 07:08:49.022374+00:00 UTC
- NVD CVE API 2.0 · Source record · observed 2026-10-04 05:55:03.931280+00:00 UTC
- OSV.dev · Source record · observed 2026-10-08 08:57:13.774521+00:00 UTC
- OSV.dev · Source record · observed 2026-10-04 13:35:46.972631+00:00 UTC
Stable permalink: https://cybercodered.org/item/cve-cve-2026-97594.html