CVE-2026-53367: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: selinux: fix avdcache auditing The per-task avdcache was incorrectly saving and reusing the audited vector computed by avc_audit_required() rather than recomputing based on the currently requested permissions and distinguishing the denied versus allowed cases. As a result, some permission checks were not being audited, e.g. directory write checks after a previously cached directory search check. [PM: line wrap tweaks]

Affected products

  • Linux Linux Kernel: from 6.17.10, before 6.18 (fixed in 6.18); from 6.18.1, before 6.18.30 (fixed in 6.18.30); from 6.19, before 7.0.7 (fixed in 7.0.7); version 6.18 only; version 7.1 only

Published 2026-07-19. Last modified 2026-07-29.