Tagged articles

vsockdrop

1 articles · Page 1 of 1
Black & White Path
Black & White Path
Aug 15, 2026 · Information Security

CVE-2026-53365 Explained: From Unprivileged User to Root via 1024‑Send vsockdrop Exploit

The article dissects CVE‑2026‑53365, a Linux kernel vsock/virtio flaw that lets an unprivileged user trigger a reference‑count underflow with 1024 zero‑copy sends, chain through io_uring and vsock to overwrite /usr/bin/su’s PT_INTERP and obtain a root shell, and outlines impact, CVSS debate, patches, and detection mitigations.

CVE-2026-53365Linux kernelexploit
0 likes · 12 min read
CVE-2026-53365 Explained: From Unprivileged User to Root via 1024‑Send vsockdrop Exploit