CVE-2026-43391
published 2026-05-08CVE-2026-43391: In the Linux kernel, the following vulnerability has been resolved: nsfs: tighten permission checks for handle opening Even privileged services should not…
PriorityP343high8.8CVSS 3.1
AVLACLPRLUINSCCHIHAH
EPSS
0.12%
2.3th percentile
In the Linux kernel, the following vulnerability has been resolved:
nsfs: tighten permission checks for handle opening
Even privileged services should not necessarily be able to see other
privileged service's namespaces so they can't leak information to each
other. Use may_see_all_namespaces() helper that centralizes this policy
until the nstree adapts.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| linux | linux | — | — |
| linux | linux | >= 5222470b2fbb3740f931f189db33dd1367b1ae75 < 1797ee11451f1b2be69863a9f5bd43b948813fdf | 1797ee11451f1b2be69863a9f5bd43b948813fdf |
| linux | linux | >= 5222470b2fbb3740f931f189db33dd1367b1ae75 < d2324a9317f00013facb0ba00b00440e19d2af5e | d2324a9317f00013facb0ba00b00440e19d2af5e |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 6.18 < 6.19.9 | 6.19.9 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-986c-6cjh-r8fc: In the Linux kernel, the following vulnerability has been resolved:
nsfs: tighten permission checks for handle opening
Even privileged services shou
ghsa_unreviewed·2026-05-08
CVE-2026-43391 GHSA-986c-6cjh-r8fc: In the Linux kernel, the following vulnerability has been resolved:
nsfs: tighten permission checks for handle opening
Even privileged services shou
In the Linux kernel, the following vulnerability has been resolved:
nsfs: tighten permission checks for handle opening
Even privileged services should not necessarily be able to see other
privileged service's namespaces so they can't leak information to each
other. Use may_see_all_namespaces() helper that centralizes this policy
until the nstree adapts.
Red Hat
kernel: nsfs: tighten permission checks for handle opening
vendor_redhat·2026-05-08
CVE-2026-43391 CWE-1220 kernel: nsfs: tighten permission checks for handle opening
kernel: nsfs: tighten permission checks for handle opening
A flaw was found in the Linux kernel's nsfs component. This vulnerability allows privileged services to potentially view the namespaces of other privileged services, leading to information disclosure. This could enable unauthorized access to sensitive data or configurations between isolated services.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Pac
No detection rules found.
No public exploits indexed.
2026-05-08
Published