Zapscape, tracked as CVE-2026-64561, lets a nested KVM guest with kernel privileges escape to the host.
Tencent researchers escaped a container and reached host root through an 18-year-old SCTP use-after-free.
A 13-year-old memory corruption flaw ships with a public exploit covering roughly 800 kernel builds.
The bug was introduced in 2017 via an in-place crypto optimization and remained undetected for nine years, affecting every major…
Sign in to your account
Remember me