Black & White Path
Aug 15, 2026 · Information Security
CVE-2026-53365 Explained: From Unprivileged User to Root via 1024‑Send vsockdrop Exploit
The article dissects CVE‑2026‑53365, a Linux kernel vsock/virtio flaw that lets an unprivileged user trigger a reference‑count underflow with 1024 zero‑copy sends, chain through io_uring and vsock to overwrite /usr/bin/su’s PT_INTERP and obtain a root shell, and outlines impact, CVSS debate, patches, and detection mitigations.
CVE-2026-53365Linux kernelexploit
0 likes · 12 min read
