Improper access control in Linux kernel - CVE-2026-80929
Published: September 13, 2026
Vulnerability details
The vulnerability allows a local user to modify the global cad_pid kernel setting.
The vulnerability exists due to improper access control in the cad_pid sysctl when handling access from child pid and user namespaces. A local user can unshare pid and user namespaces and modify the cad_pid sysctl to modify the global cad_pid kernel setting.