CVE-2026-64600

NVD data not available for this CVE. It may be pending analysis or not yet published.

Related Intelligence (5)

MEDIUMVulnerability

RefluXFS: Local Privilege Escalation via XFS reflink direct-I/O race (CVE-2026-64600)

[object Object]

CVE-2026-64600
r/blueteamsec
HIGHVulnerability

Linux XFS has a decade-old race condition allowing full root access

Linux systems using the XFS filesystem suffer from a race condition that could enable an unprivileged local user to gain full root access. The flaw affects systems with Linux kernel 4.11 or later that have enabled the XFS feature reflink, which permits the creation of copies of a file without actually copying its data. According to Qualys Threat Research Unit (TRU), there was a way around the file

CVE-2026-64600
CSO Online
LOWVulnerability

New RefluXFS Linux flaw lets attackers gain root privileges

A nine-year-old race condition vulnerability in the Linux kernel's XFS filesystem, tracked as CVE-2026-64600, allows local attackers to overwrite protected files and gain root privileges. [...]

CVE-2026-64600
BleepingComputer
MEDIUMVulnerability

Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs

RefluXFS, a new Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets an unprivileged local user overwrite root-owned files on an XFS filesystem and gain persistent root access. Qualys said default installations of Red Hat Enterprise Linux and its derivatives, Fedora Server, and Amazon Linux can meet the conditions for exploitation. The company demonstrated the race

CVE-2026-64600
The Hacker News
MEDIUMAi

RefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS (CVE-2026-64600)

Executive summary Qualys Threat Research Unit (TRU) identified CVE-2026-64600, a race condition in the Linux kernel’s XFS filesystem copy-on-write path. An attacker with an ordinary local account can exploit this race condition to overwrite protected files on disk and gain host root privileges on affected systems, including deployments running SELinux in Enforcing mode. This discovery […]

CVE-2026-64600
Qualys Blog