cbcvebase.
CVE-2026-43403
published 2026-05-08

CVE-2026-43403: In the Linux kernel, the following vulnerability has been resolved: nsfs: tighten permission checks for ns iteration ioctls Even privileged services should not…

PriorityP343high8.8CVSS 3.1
AVLACLPRLUINSCCHIHAH
EPSS
0.13%
2.9th percentile
In the Linux kernel, the following vulnerability has been resolved: nsfs: tighten permission checks for ns iteration ioctls Even privileged services should not necessarily be able to see other privileged service's namespaces so they can't leak information to each other. Use may_see_all_namespaces() helper that centralizes this policy until the nstree adapts.

Affected

10 ranges
VendorProductVersion rangeFixed in
linuxlinux
linuxlinux>= a1d220d9dafa8d76ba60a784a1016c3134e6a1e8 < 3376b345df155ca36d8611857b41ff7d5183fc383376b345df155ca36d8611857b41ff7d5183fc38
linuxlinux>= a1d220d9dafa8d76ba60a784a1016c3134e6a1e8 < 2f3dea284c761c890d676f77d5e55c0c496b4ef42f3dea284c761c890d676f77d5e55c0c496b4ef4
linuxlinux>= a1d220d9dafa8d76ba60a784a1016c3134e6a1e8 < 0ad650e60150eda789deca5e78a6a09d26bf8fc90ad650e60150eda789deca5e78a6a09d26bf8fc9
linuxlinux>= a1d220d9dafa8d76ba60a784a1016c3134e6a1e8 < e6b899f08066e744f89df16ceb782e06868bd148e6b899f08066e744f89df16ceb782e06868bd148
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 6.12 < 6.12.786.12.78
linuxlinux_kernel>= 6.13 < 6.18.206.18.20
linuxlinux_kernel>= 6.19 < 6.19.96.19.9

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
vendor_redhat7.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.