High severity8.8NVD Advisory· Published May 8, 2026· Updated Jun 17, 2026
CVE-2026-43391
CVE-2026-43391
Description
In the Linux kernel, the following vulnerability has been resolved:
nsfs: tighten permission checks for handle opening
Even privileged services should not necessarily be able to see other privileged service's namespaces so they can't leak information to each other. Use may_see_all_namespaces() helper that centralizes this policy until the nstree adapts.
Affected products
7- osv-coords3 versionspkg:apk/chainguard/linux-gcp-6.18-bootc-boot-installedpkg:apk/chainguard/linux-qemu-6.18-bootc-boot-installedpkg:linux/kernel
< 6.18.38-r2+ 2 more
- (no CPE)range: < 6.18.38-r2
- (no CPE)range: < 6.18.38-r2
- (no CPE)range: >= 6.18.0, < 6.19.9
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.