CVE-2025-68736 — Incorrect Privilege Assignment in Linux
Severity
6.4MEDIUM
No vectorEPSS
0.0%
top 94.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 24
Latest updateApr 17
Description
In the Linux kernel, the following vulnerability has been resolved:
landlock: Fix handling of disconnected directories
Disconnected files or directories can appear when they are visible and
opened from a bind mount, but have been renamed or moved from the source
of the bind mount in a way that makes them inaccessible from the mount
point (i.e. out of scope).
Previously, access rights tied to files or directories opened through a
disconnected directory were collected by walking the related hie…
Affected Packages13 packages
🔴Vulnerability Details
3GHSA▶
GHSA-pxr4-9wxh-g3jr: In the Linux kernel, the following vulnerability has been resolved:
landlock: Fix handling of disconnected directories
Disconnected files or directo↗2025-12-24
OSV▶
CVE-2025-68736: In the Linux kernel, the following vulnerability has been resolved: landlock: Fix handling of disconnected directories Disconnected files or directori↗2025-12-24