Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
5052 articles · 189092 vulns · 37/41 feeds (7d)
← Back to list
—
CVE-2026-45893EXPLOITEDPATCHED
canonical · apparmor

apparmor: Fix & Optimize table creation from possibly unaligned memory

Description

In the Linux kernel, the following vulnerability has been resolved: apparmor: Fix & Optimize table creation from possibly unaligned memory Source blob may come from userspace and might be unaligned. Try to optize the copying process by avoiding unaligned memory accesses. - Added Fixes tag - Added "Fix &" to description as this doesn't just optimize but fixes a potential unaligned memory access [jj: remove duplicate word "convert" in comment trigger checkpatch warning]

Affected Products

VendorProductVersions
canonicalapparmore6e8bf418850d7958311a96ccfb594f2bcc8313e, e6e8bf418850d7958311a96ccfb594f2bcc8313e, e6e8bf418850d7958311a96ccfb594f2bcc8313e, e6e8bf418850d7958311a96ccfb594f2bcc8313e, 4.11

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
linuxlinuxmitre_affected90%

References

  • https://git.kernel.org/stable/c/47e351dfef60ab0e3285133556e1a9c7f646a969
  • https://git.kernel.org/stable/c/e027999049c493fb728ead5a90db76942181a935
  • https://git.kernel.org/stable/c/226c3b10aab23f73b03c47e7773107de56ba3a4e
  • https://git.kernel.org/stable/c/6fc367bfd4c8886e6b1742aabbd1c0bdc310db3a

Related News (4 articles)

Tier B
CERT-FR12d ago
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (31 juillet 2026)
→ No new info (linked only)
Tier A
Microsoft MSRC76d ago
CVE-2026-45893 apparmor: Fix & Optimize table creation from possibly unaligned memory
→ No new info (linked only)
Tier C
VulDB77d ago
CVE-2026-45893 | Linux Kernel up to 6.12.74/6.18.13/6.19.3 apparmor privilege escalation
→ No new info (linked only)
Tier C
Linux Kernel CVEs77d ago
CVE-2026-45893: apparmor: Fix & Optimize table creation from possibly unaligned memory
→ No new info (linked only)
CISA KEV❌ No
Actively exploited✅ Yes
Patch available
47e351dfef60ab0e3285133556e1a9c7f646a969e027999049c493fb728ead5a90db76942181a935226c3b10aab23f73b03c47e7773107de56ba3a4e6fc367bfd4c8886e6b1742aabbd1c0bdc310db3a06.12.756.18.146.19.47.0
PublishedMay 27, 2026
Last enriched77d agov3
Trending Score9
Source articles4
Independent4
Info Completeness7/14
Missing: cvss, epss, cwe, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-63297
Cross-project instance copy bypasses target project restrictions via TOCTOU in config merge
Trending: 42
CRITICALCVE-2026-63296
Project restriction bypass via instance migration config override
Trending: 42
HIGHCVE-2026-63298
LXD arbitrary lxc.conf directive injection via NVIDIA instance configuration
Trending: 39
MEDIUMCVE-2026-63295
Project restriction `restricted.containers.privilege=isolated` bypassable by omitting `security.idmap.isolated`
Trending: 35
CRITICALCVE-2026-63293
Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root
Trending: 30

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
May 27, 2026
Discovered by ZDM
May 27, 2026
Updated: affectedVersions
May 27, 2026
Updated: description, affectedVersions, severity, activelyExploited
May 27, 2026
Actively Exploited
May 27, 2026
Patch Available
May 27, 2026

Version History

v3
Last enriched 77d ago
v3Tier C77d ago

Updated description with critical vulnerability details, changed severity to CRITICAL, and updated affected versions.

descriptionaffectedVersionsseverityactivelyExploited
via VulDB
v2Tier C77d ago

Updated description with more technical detail, added affected version 4.11, and confirmed patch available.

affectedVersions
via Linux Kernel CVEs
v177d ago

Initial creation