Impact
A flaw in the Linux kernel allows privileged services to view the namespaces of other privileged services, potentially leaking sensitive configuration and state information. This improper permission check enables an unauthorized privileged process to gather data it should not have access to, thereby violating confidentiality constraints.
Affected Systems
Linux Kernel deployments across all vendor distributions. Specific affected versions are not enumerated in the advisory, so any kernel release prior to the inclusion of the fix may be vulnerable.
Risk and Exploitability
No CVSS or EPSS score is published, and the vulnerability is not listed in CISA KEV. The attack vector is inferred to be local, requiring a privileged service that is already running on the system; a malicious or misconfigured service could exploit the weakened namespace visibility to extract information from other services.
OpenCVE Enrichment