CVE-2026-93207: Linux
- Severity
- 9.8 (CRITICAL)
- Vendor
- LINUX
- Affected versions
- b0bc53470d1af01f62a0fe2d405cf56477804863 through before 56b29d62017c7dd1718d060dd5b3a2ce61095d0c; b0bc53470d1af01f62a0fe
- Patch status
- Patched
- Published
- 2026-09-24T16:17:15.357
- Modified
- 2026-09-25T05:16:58.630
Why it matters
Critical vulnerability requiring immediate validation against your environment.
Recommended admin actions
- Prioritize validation immediately due to critical CVSS severity.
Technical summary
In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Zero rpc_gss_wire_cred at svcauth_gss_decode_credbody() entry svcauth_gss_decode_credbody() writes the caller's rpc_gss_wire_cred field by field and assigns gc_ctx.len only on the success tail. The caller storage is svcdata->clcred, which lives in the per-svc_rqst gss_svc_data and is reused across requests. Early decode failures leave partially decoded state mixed with residue from the prior request. The trailing body_len tightness check is the sharpest case: xdr_stream_decode_opaque_inline() has already written gc_ctx.data with a borrowed inline pointer into the current request's XDR pages, but gc_ctx.len retains its prior value. Once the request pages are released the pooled clcred carries a dangling pointer paired with a stale length. Zero the caller's rpc_gss_wire_cred at function entry so that every early-return path leaves a deterministic all-zero cred. On the trailing tightness-check path, gc_ctx.len is now zero instead of stale, which neuters length-driven consumers such as gss_svc_searchbyctx() that would otherwise walk the dangling data pointer.
View the official NVD record for CVE-2026-93207
CVE data is sourced from NVD/CNA records and optional enrichment. Validate against the vendor advisory before taking production action.
VULNERABILITY PULSE
| AFFECTED PRODUCT | ACTION | ||
|---|---|---|---|
| CVE-2026-97359 |
Product identification pending
Reporter: DISCLOSURE
|
10
CRITICAL
|
VIEW RECORD |
| CVE-2026-97360 |
Product identification pending
Reporter: DISCLOSURE
|
10
CRITICAL
|
VIEW RECORD |
| CVE-2026-61732 |
Decepticon PATCH
Reporter: SECURITY-ADVISORIES
|
10
CRITICAL
|
VIEW RECORD |
| CVE-2026-19072 |
Product identification pending
Reporter: CVE
|
9.9
CRITICAL
|
VIEW RECORD |
| CVE-2026-93425 |
dokploy PATCH
Reporter: SECURITY-ADVISORIES
|
9.9
CRITICAL
|
VIEW RECORD |
| CVE-2026-93207 |
Linux PATCH
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
9.8
CRITICAL
|
VIEW RECORD |
| CVE-2026-97413 |
Linux PATCH
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
9.8
CRITICAL
|
VIEW RECORD |
| CVE-2026-13249 |
Product identification pending
Reporter: PSIRT
|
9.8
CRITICAL
|
VIEW RECORD |
| CVE-2026-14281 |
Automation Web Platform – Notifications and OTP for WooCommerce, Advanced Country Code
Reporter: SECURITY
|
9.8
CRITICAL
|
VIEW RECORD |
| CVE-2026-81549 |
Product identification pending
Reporter: PSIRT
|
9.6
CRITICAL
|
VIEW RECORD |
| CVE-2026-91187 |
Product identification pending PATCH
Reporter: 6B3AD84C-E1A6-4BF7-A703-F496B71E49DB
|
9.3
CRITICAL
|
VIEW RECORD |
| CVE-2026-61604 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
9.3
CRITICAL
|
VIEW RECORD |
| CVE-2026-61741 |
http4s-scala-xml
Reporter: SECURITY-ADVISORIES
|
9.3
CRITICAL
|
VIEW RECORD |
| CVE-2026-61742 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
9.3
CRITICAL
|
VIEW RECORD |
| CVE-2026-13016 |
Product identification pending PATCH
Reporter: PSIRT
|
9.3
CRITICAL
|
VIEW RECORD |
| CVE-2026-86860 |
Product identification pending PATCH
Reporter: PSIRT
|
9.3
CRITICAL
|
VIEW RECORD |
| CVE-2026-93291 |
Product identification pending
Reporter: ICS-CERT
|
9.3
CRITICAL
|
VIEW RECORD |
| CVE-2026-90481 |
Product identification pending PATCH
Reporter: CVE
|
9.2
CRITICAL
|
VIEW RECORD |
| CVE-2026-97404 |
Product identification pending PATCH
Reporter: CVE
|
9.2
CRITICAL
|
VIEW RECORD |
| CVE-2026-81630 |
Product identification pending
Reporter: ICS-CERT
|
9.2
CRITICAL
|
VIEW RECORD |
| CVE-2026-93228 |
Linux PATCH
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
9.1
CRITICAL
|
VIEW RECORD |
| CVE-2026-79766 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
9.1
CRITICAL
|
VIEW RECORD |
| CVE-2026-89055 |
Customer Reviews for WooCommerce
Reporter: SECURITY
|
9.1
CRITICAL
|
VIEW RECORD |
| CVE-2026-93399 |
Online Scheduling and Appointment Booking System – Bookly
Reporter: SECURITY
|
9.1
CRITICAL
|
VIEW RECORD |
| CVE-2026-93289 |
Product identification pending
Reporter: ICS-CERT
|
9
CRITICAL
|
VIEW RECORD |
| CVE-2026-94606 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.9
HIGH
|
VIEW RECORD |
| CVE-2026-97059 |
Product identification pending
Reporter: DISCLOSURE
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-81539 |
Product identification pending
Reporter: PSIRT
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-81545 |
Product identification pending
Reporter: PSIRT
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-81547 |
Product identification pending
Reporter: PSIRT
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-81548 |
Product identification pending
Reporter: PSIRT
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-81552 |
Product identification pending
Reporter: PSIRT
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-82093 |
Product identification pending
Reporter: PSIRT
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-93280 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-93284 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-93790 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-93793 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-93799 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-93806 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-94609 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-97409 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-97442 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-97509 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-13248 |
Product identification pending
Reporter: PSIRT
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-62062 |
Product identification pending
Reporter: AUDIT
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-19804 |
s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions
Reporter: SECURITY
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-89426 |
Knit Pay – Cashfree, Instamojo, Razorpay, PayPal and more
Reporter: SECURITY
|
8.8
HIGH
|
VIEW RECORD |
| CVE-2026-97057 |
Product identification pending
Reporter: DISCLOSURE
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-97362 |
Product identification pending
Reporter: DISCLOSURE
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-56744 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-63498 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-91122 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-85057 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-61825 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-86858 |
Product identification pending PATCH
Reporter: PSIRT
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-86859 |
Product identification pending PATCH
Reporter: PSIRT
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-82566 |
Product identification pending
Reporter: ICS-CERT
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-84399 |
Product identification pending
Reporter: ICS-CERT
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-96883 |
Product identification pending PATCH
Reporter: FF89BA41-3AA1-4D27-914A-91399E9639E5
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-87721 |
Product identification pending PATCH
Reporter: CVE-COORDINATION
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-87722 |
Product identification pending PATCH
Reporter: CVE-COORDINATION
|
8.7
HIGH
|
VIEW RECORD |
| CVE-2026-96515 |
Product identification pending
Reporter: VDISCLOSE
|
8.6
HIGH
|
VIEW RECORD |
| CVE-2026-77874 |
Product identification pending
Reporter: PSIRT
|
8.6
HIGH
|
VIEW RECORD |
| CVE-2026-77581 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.6
HIGH
|
VIEW RECORD |
| CVE-2026-63493 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.6
HIGH
|
VIEW RECORD |
| CVE-2026-95985 |
Product identification pending PATCH
Reporter: FF89BA41-3AA1-4D27-914A-91399E9639E5
|
8.6
HIGH
|
VIEW RECORD |
| CVE-2026-81455 |
Product identification pending
Reporter: SECURITY_ALERT
|
8.6
HIGH
|
VIEW RECORD |
| CVE-2026-77967 |
Product identification pending
Reporter: ICS-CERT
|
8.6
HIGH
|
VIEW RECORD |
| CVE-2026-97818 |
Product identification pending
Reporter: CVE
|
8.6
HIGH
|
VIEW RECORD |
| CVE-2026-56739 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.5
HIGH
|
VIEW RECORD |
| CVE-2026-56738 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.5
HIGH
|
VIEW RECORD |
| CVE-2026-82371 |
Product identification pending PATCH
Reporter: SIRT
|
8.5
HIGH
|
VIEW RECORD |
| CVE-2026-82372 |
Product identification pending PATCH
Reporter: SIRT
|
8.5
HIGH
|
VIEW RECORD |
| CVE-2026-93354 |
Product identification pending PATCH
Reporter: DISCLOSURE
|
8.5
HIGH
|
VIEW RECORD |
| CVE-2026-85082 |
Product identification pending
Reporter: HELP
|
8.5
HIGH
|
VIEW RECORD |
| CVE-2026-97730 |
Product identification pending PATCH
Reporter: CVE
|
8.5
HIGH
|
VIEW RECORD |
| CVE-2026-93827 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.4
HIGH
|
VIEW RECORD |
| CVE-2026-97450 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.4
HIGH
|
VIEW RECORD |
| CVE-2026-97451 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.4
HIGH
|
VIEW RECORD |
| CVE-2026-97452 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.4
HIGH
|
VIEW RECORD |
| CVE-2026-97455 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.4
HIGH
|
VIEW RECORD |
| CVE-2026-86857 |
Product identification pending PATCH
Reporter: PSIRT
|
8.4
HIGH
|
VIEW RECORD |
| CVE-2026-14443 |
Product identification pending PATCH
Reporter: SIRT
|
8.4
HIGH
|
VIEW RECORD |
| CVE-2026-95699 |
Product identification pending
Reporter: ICS-CERT
|
8.4
HIGH
|
VIEW RECORD |
| CVE-2026-97898 |
Product identification pending
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
|
8.4
HIGH
|
VIEW RECORD |
| CVE-2026-13465 |
Product identification pending
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-13466 |
Product identification pending
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-13467 |
Product identification pending
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-58004 |
Product identification pending
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-58005 |
Product identification pending
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-58006 |
Product identification pending
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-58007 |
Product identification pending
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-58008 |
Product identification pending
Reporter: 04C0172E-9735-4A9D-A92A-FE01FA863447
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-96746 |
Product identification pending
Reporter: CNA
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-82157 |
Product identification pending
Reporter: SECURITY_ALERT
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-96748 |
Product identification pending
Reporter: CNA
|
8.3
HIGH
|
VIEW RECORD |
| CVE-2026-56736 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.2
HIGH
|
VIEW RECORD |
| CVE-2026-91160 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.2
HIGH
|
VIEW RECORD |
| CVE-2026-97433 |
Product identification pending
Reporter: 416BAAA9-DC9F-4396-8D5F-8C081FB06D67
|
8.2
HIGH
|
VIEW RECORD |
| CVE-2026-85056 |
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
|
8.2
HIGH
|
VIEW RECORD |
About the Vulnerability Pulse CVE Feed
The Vulnerability Pulse feed tracks live CVE advisories sourced from the National Vulnerability Database and vendor security disclosures. It is designed for SOC analysts, IT administrators, and security teams who need a fast, filterable view of current vulnerabilities without digging through raw NVD data.
How to Use the CVE Advisory Tracker
Use the severity filters to narrow results to Critical or High priority vulnerabilities. Filter by vendor to focus on software and hardware relevant to your environment. Export to CSV for reporting, ticketing, or patch prioritization workflows.
What Is a CVE Advisory?
A CVE (Common Vulnerabilities and Exposures) advisory is a public disclosure of a security vulnerability assigned a unique identifier by MITRE. Advisories include severity scores (CVSS), affected versions, and remediation guidance. Monitoring CVE advisories is a core function of vulnerability management programs and SOC operations.
CVE Analysis & Writeups
For in-depth analysis of specific vulnerabilities, visit the IT Knowledge Bases blog for CVE breakdowns, exploitation analysis, and remediation guidance written for security practitioners.