Description
Use-after-free vulnerability in ESET Linux products potentially allowed an attacker to trigger kernel panic on the system
Published: 2026-07-16
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a use‑after‑free flaw in ESET's Linux security products, identified as CWE‑416. Exploiting it can cause the kernel to crash, resulting in a system-wide panic and interruption of services. The impact is limited to denial of service; there is no evidence of data loss or remote code execution. The flaw allows the attacker to trigger a kernel panic directly through the affected product code.

Affected Systems

The flaw affects ESET Endpoint Antivirus for Linux and ESET Server Security for Linux. No specific version information is provided in the advisory; patching is recommended for all affected deployments.

Risk and Exploitability

The CVSS score of 6.7 places the vulnerability in the Moderate severity range, and the EPSS score of less than 1% indicates a low exploitation probability as of this analysis. The vulnerability is not listed in the CISA KEV catalog, suggesting no widespread exploitation has been reported. The attack vector is not explicitly described, so it is inferred that an attacker could trigger the flaw via malicious input to the ESET product, potentially requiring local or privileged access. Overall, the risk is moderate but mitigable through patching.

Generated by OpenCVE AI on July 31, 2026 at 02:06 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Download and install the latest ESET patch for Endpoint Antivirus for Linux or Server Security for Linux from the vendor’s support site.
  • Reboot the affected Linux systems after applying the patch to ensure the kernel updates take effect.
  • Restrict access to the ESET service by configuring firewall rules to allow only trusted IP ranges and applying mandatory security policies such as SELinux or AppArmor to limit the scope of potential exploitation.

Generated by OpenCVE AI on July 31, 2026 at 02:06 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 30 Jul 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Eset
Eset endpoint Antivirus
Eset server Security
Vendors & Products Eset
Eset endpoint Antivirus
Eset server Security

Thu, 16 Jul 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 16 Jul 2026 08:45:00 +0000

Type Values Removed Values Added
Description Use-after-free vulnerability in ESET Linux products potentially allowed an attacker to trigger kernel panic on the system
Title Use-after-free vulnerability in ESET security products for Linux
Weaknesses CWE-416
References
Metrics cvssV4_0

{'score': 6.7, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Eset Endpoint Antivirus Server Security
cve-icon MITRE

Status: PUBLISHED

Assigner: ESET

Published:

Updated: 2026-07-16T12:17:48.734Z

Reserved: 2026-04-16T08:13:25.859Z

Link: CVE-2026-6424

cve-icon Vulnrichment

Updated: 2026-07-16T12:17:35.691Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T02:15:06Z

Weaknesses