Monitor this situation.
Unsubscribe anytime.
[SITUATION] · [QUIET] · [TECHNOLOGY]
14 clusters · 30 sources · 54 days · First seen · Last updated
Linux security patch wave continues (June–August 2026)
Overview
The coordinated response that began in late June has expanded into a multi‑month effort to remediate a record‑high volume of Linux‑related flaws. A June bulletin disclosed 1,888 vulnerabilities, including 324 kernel issues and a critical Chromium V8 exploit, prompting Red Hat to issue urgent errata for RHEL 7 ELS and RHEL 8 streams. Early July saw another wave of kernel and component updates from Ubuntu, Red Hat, Debian LTS and others, covering OpenVPN, OpenShift, Vim, nginx, and dozens of CVEs. The most notable discoveries were the Januscape (CVE‑2026‑53359) and GhostLock (CVE‑2026‑43499) kernel bugs, both patched in the mainline kernel after years of exposure and judged high‑severity for cloud-hosted KVM environments. Cloud providers such as Amazon, Google and Microsoft quickly applied the Januscape fix, while Ubuntu released its own kernel update and advised disabling nested virtualization until patched. Mid‑July, enterprise‑focused advisories from Oracle Linux, Red Hat, and Tenable Core added critical updates for kernels, OpenSSH, sudo, Python, Java and other core libraries. By early August, SUSE contributed a critical WebKit2GTK3 fix and a broader set of package patches across the Linux ecosystem, underscoring the sustained, cross‑distribution effort to harden both server and desktop platforms against an expanding threat landscape. Additional developments in late July confirmed the scale of the crisis. Qualys highlighted the RefluXFS race‑condition (CVE‑2026‑64600) in the XFS filesystem, estimating exposure of over 16 million installations and prompting immediate kernel updates from Red Hat, AlmaLinux, Oracle and others. LWN’s July 27‑28 bulletins listed dozens of package updates across AlmaLinux, Debian, Fedora, Mageia, Oracle Linux and Red Hat, extending the patch cadence. In mid-August, new kernel vulnerabilities emerged that threaten host isolation. Zapscape (CVE-2026-64561) was identified in the KVM hypervisor, where a stale-root check ordering flaw could allow a guest virtual machine to execute code on the host.
Entities
Debian · Red Hat · AlmaLinux · Linux kernel · openSUSE
Claims
What the coverage asserts, and how many sources carry each claim.
- [○ 1 SOURCE] CVE‑2026‑64600 (RefluXFS) is a Linux kernel XFS race condition that allows local privilege escalation to root.
- [○ 1 SOURCE] RefluXFS may affect over 16.4 million systems, including RHEL, Oracle Linux, Amazon Linux and Fedora.
- [○ 1 SOURCE] AlmaLinux 10 security update ALSA‑2026:44270 patches CVE‑2026‑46323, a use‑after‑free vulnerability in the net/gro subsystem.
- [○ 1 SOURCE] AlmaLinux 9 bug‑fix ALBA‑2026:39332 resolves XFS reflink data‑corruption in version 9.8.z.
- [○ 1 SOURCE] Multiple Linux distributions released security updates for dozens of packages, including kernel, OpenSSL, Java, and various system utilities.
- [○ 1 SOURCE] CVE‑2026‑50458 is a use‑after‑free vulnerability in the Windows bfs.sys driver that can enable privilege escalation.
- [○ 1 SOURCE] The Windows bfs.sys vulnerability was patched in the latest Patch Tuesday release.
- [○ 1 SOURCE] Major Linux distributions released critical patches for the Linux kernel, glibc, OpenSSH, Node.js, and OpenSSL in week 31, 2026.
- [○ 1 SOURCE] Qubes OS addressed four Xen vulnerabilities (XSA-500, XSA-505, XSA-506, XSA-507) that could allow malicious VMs to escape isolation.
- [○ 1 SOURCE] Ubuntu rolled out specialized cloud kernel updates for Azure, AWS, and Oracle environments.
- [○ 1 SOURCE] Arch Linux released an August ISO featuring Linux kernel 7.1.5.
- [○ 1 SOURCE] Linux desktop market share surpassed 10% in North America.
Timeline
-
22 days ago
[TECHNOLOGY] 2 sourcesLinux distributions release critical security patches for kernels and infrastructureMajor Linux distributions including Ubuntu and Debian have released critical security patches for kernels, cloud infrastructure, and runtime tools like Redis and Podman to address remote execution and escapeRis
-
28 days ago
[TECHNOLOGY] 2 sourcesopenSUSE releases Leap 16 amid major Linux security updatesopenSUSE has launched Leap 16 for various platforms while SUSE issues critical security patches for Chromium, Dracut, and the Linux kernel to address multiple vulnerabilities.
-
about 1 month ago
[TECHNOLOGY] 8 sourcesLinux kernel vulnerabilities Zapscape and SCTPhantom enable host escapeNew Linux kernel vulnerabilities, Zapscape and SCTPhantom, allow attackers to escape virtual machine or container isolation to gain host-level control via use-after-free flaws.
-
about 1 month ago
[TECHNOLOGY] 2 sourcesZapscape KVM Vulnerability (CVE‑2026‑64561) Threatens Linux HostsZapscape (CVE‑2026‑64561) is a critical KVM shadow‑MMU bug that lets a privileged guest VM escape to the host Linux kernel, affecting cloud and HPC environments; patches are urgently needed.
-
about 1 month ago
[TECHNOLOGY] 3 sourcesSUSE issues critical WebKit2GTK3 security update and multiple Linux package patchesSUSE released a critical WebKit2GTK3 security patch and several moderate updates for openSUSE packages, while LWN.net reported a wide‑range of security updates across major Linux distributions on 4 Aug 2026.
-
about 1 month ago
[TECHNOLOGY] 5 sourcesLinux Distributions Deploy Massive Security Patches in Week 31, 2026Linux distributions issued critical patches for kernel, glibc, OpenSSH, Node.js, OpenSSL and more in week 31, 2026, with Ubuntu adding cloud‑kernel updates and Qubes OS fixing Xen vulnerabilities.
-
about 2 months ago
[TECHNOLOGY] 2 sourcesLinux security updates released for Tuesday and WednesdayLWN.net released Tuesday and Wednesday security bulletins with numerous package patches for major Linux distributions, dated late July 2026.
-
about 2 months ago
[TECHNOLOGY] 6 sourcesCritical Linux Kernel Flaw RefluXFS Exposes Millions of SystemsQualys disclosed a critical Linux XFS race‑condition (CVE‑2026‑64600) affecting millions, prompting kernel patches from AlmaLinux and other distros, while a Windows bfs.sys use‑after‑free (CVE‑2026‑50458) was也已
-
about 2 months ago
[TECHNOLOGY] 2 sourcesEnterprise Linux Distributions Issue Major 2026 Security UpdatesTenable Core and Red Hat issue extensive 2026 security updates for Oracle Linux and RHEL, covering kernels, libraries and key enterprise tools.
-
about 2 months ago
[TECHNOLOGY] 3 sourcesLinux kernel Januscape vulnerability threatens global data centersA 16‑year‑old Linux kernel flaw called Januscape lets a VM escape its host, risking data‑center breaches; major cloud providers have patched it.
-
2 months ago
[TECHNOLOGY] 2 sourcesSecurity patches roll out for Windows DWM and Ubuntu Linux kernel privilege‑escalation bugsPatches for Windows DWM (CVE‑2026‑20871) and Ubuntu Linux kernel (CVE‑2026‑53359) mitigate local privilege‑escalation bugs; Windows fixes include micropatches for legacy versions, Ubuntu advises disabling KVM‑n
-
2 months ago
[TECHNOLOGY] 4 sourcesLinux KVM “Januscape” VM Escape and GhostLock Vulnerabilities PatchedCritical Linux kernel bugs—Januscape VM escape (CVE‑2026‑53359) and GhostLock privilege escalation (CVE‑2026‑43499)—have been patched after years of existence; upgrades are urged to protect cloud hosts.
-
2 months ago
[TECHNOLOGY] 2 sourcesLinux Distributions Release Critical Security PatchesUbuntu, Red Hat and Debian released extensive kernel, OpenVPN, nginx and other Linux security patches to fix hundreds of vulnerabilities.
-
3 months ago
[TECHNOLOGY] 2 sourcesLinux and Red Hat security updates expose record 1,888 vulnerabilitiesJune’s Linux patch bulletin listed a record 1,888 flaws, including an actively exploited Chromium bug, while Red Hat released important updates for perl‑IO‑Compress and libxslt on RHEL 7/8.
Sources
4sysops.com · avleonov.com · belgiannature.be · blog.0patch.com · blogspan.net · borncity.com · businesstechweekly.com · capecod.com · countryrebel.com · cybersecuritynews.com · dev.to · flagthis.com · hackaday.com · ithome.com · itinsight.pt · linuxcompatible.org · linuxiac.com · linuxpromagazine.com · linuxsecurity.com · lwn.net · old.lwn.net · omgubuntu.co.uk · opensourceforu.com · sapo.pt · sempreupdate.com.br · spacemoney.com.br · techrights.org · thecyberexpress.com · ubuntubuzz.com · ubuntulinux.org
This summary has been updated 8 times: see revision history