Vulnerabilities (CVE)

Filtered by vendor Cryptodev-linux Subscribe
Filtered by product Cryptodev-linux
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-28529 1 Cryptodev-linux 1 Cryptodev-linux 2026-08-17 N/A 7.8 HIGH
cryptodev-linux version 1.14 and prior contain a page reference handling flaw in the get_userbuf function of the /dev/crypto device driver that allows local users to trigger use-after-free conditions. Attackers with access to the /dev/crypto interface can repeatedly decrement reference counts of controlled pages to achieve local privilege escalation.