Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-Id: <DKHYUYT29ZY0.29UIF03ZMHF70@redcoat.dev>
Date: Thu, 06 Aug 2026 16:29:42 +0100
From: "Emily Shepherd" <emily@...coat.dev>
To: <oss-security@...ts.openwall.com>
Subject: Re: CVE-2026-64564: Linux SCTP ASCONF transport UAF
 leading to local privilege escalation and container escape

On Thu Aug 6, 2026 at 12:33 PM BST, Fourie Zhang wrote:
> Hi all,
>
> We are publishing details of SCTPhantom, CVE-2026-64564, a use-after-free
> in Linux SCTP Dynamic Address Reconfiguration.
>
> Impact:
> - Local low-privileged user -> root on affected systems.
> - Container -> host root.

I notice there is no mitigation section in the write up. Can you confirm 
if unloading / blacklisting the sctp module - on a system where this 
isn't built into the kernel - would protect against this exploit.

Thanks,

Emily

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.