CVE-2026-17523
Linux Kernel: Schwachstelle ermöglicht Privilegieneskalation
Beschreibung
Ein Fehler wurde im Linux-Kernel in net/can/bcm.c in can: bcm gefunden, bei dem ein unprivilegierter lokaler Benutzer diese Schwachstelle ausnutzen kann, um beliebigen Code innerhalb des Kernels auszuführen. Dies führt zu einer lokalen Privilegien-Eskalation (LPE). Dadurch kann der Angreifer Root-Rechte erlangen und die betroffene System vollständig übernehmen.
Quelle: BSI
Metriken
Re-Analyse & Statuswechsel
Chronologie der NVD-Audit-Events für diese CVE — Reanalyses, CVSS-Updates, CPE-Diffs.
- CVE Modified2026-09-10 14:17 UTC· 416baaa9-dc9f-4396-8d5f-8c081fb06d67
- Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/17xxx/CVE-2026-17523.json">CVE-2026-17523</a>
- CVE Modified2026-09-10 06:17 UTC· 416baaa9-dc9f-4396-8d5f-8c081fb06d67
- CVSS V3.1: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- CVE Modified2026-09-09 08:17 UTC· 416baaa9-dc9f-4396-8d5f-8c081fb06d67
- Description: A flaw was found in the Linux kernel in net/can/bcm.c in can: bcm, where an unprivileged local user can exploit this vulnerability to execute arbitrary code within the kernel, which leads to a local privilege escalation (LPE). This allows the attacker to gain root privileges and take full control of the affected system. → In the Linux kernel, the following vulnerability has been resolved: can: bcm: switch timer to HRTIMER_MODE_SOFT and remove hrtimer_tasklet This patch switches the timer to HRTIMER_MODE_SOFT, which executed the timer callback in softirq context and removes the hrtimer_tasklet.
- Affected: New affected value received. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/17xxx/CVE-2026-17523.json">CVE-2026-17523</a>
- Reference: https://git.kernel.org/stable/c/79305a826f872fe446c6fbf8450f515053ef6951
- Reference: https://git.kernel.org/stable/c/bf74aa86e111aa3b2fbb25db37e3a3fab71b5b68
- CVE Modified2026-09-01 10:17 UTC· secalert@redhat.com
- Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/17xxx/CVE-2026-17523.json">CVE-2026-17523</a>
- Reference: https://access.redhat.com/errata/RHSA-2026:55764
- Reference: https://access.redhat.com/errata/RHSA-2026:55765
- Reference: https://access.redhat.com/errata/RHSA-2026:61932
- CVE Modified2026-08-17 21:16 UTC· secalert@redhat.com
- Reference: https://access.redhat.com/errata/RHSA-2026:55764
- Affected: Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6 (+5) → Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 10 (+5)
Betroffene Produkte
Aus der Hersteller-/CERT-Meldung extrahierte Produkte und Versionsbereiche. Ein Version-Range wie „<4.14.6“ impliziert die Update-Empfehlung „auf 4.14.6 oder höher aktualisieren“.
Open Source
Linux Kernel<4.19.226 with commit 79305a826f872fe446c6fbf8450f515053ef6951
Open Source
Linux Kernel<5.4 with commit bf74aa86e111aa3b2fbb25db37e3a3fab71b5b68
Quellen & Referenzen
- https://access.redhat.com/errata/RHSA-2026:55764vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2026:55765vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2026:61932vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2026-17523vdb-entryx_refsource_REDHAT
- https://bugzilla.redhat.com/show_bug.cgi?id=2507407issue-trackingx_refsource_REDHAT
- https://github.com/torvalds/linux/commit/bf74aa86e111aa3b2fbb25db37e3a3fab71b5b68
- https://git.kernel.org/stable/c/79305a826f872fe446c6fbf8450f515053ef6951
- https://git.kernel.org/stable/c/bf74aa86e111aa3b2fbb25db37e3a3fab71b5b68