Linux kernel vulnerability CVE-2026-53359, known as Januscape, allows VM escape and code execution on Intel and AMD systems. Discovered by Hyunwoo Kim, it is a use-after-free issue that can be triggered from within the guest to corrupt host's shadow page state. The flaw poses significant risks in multi-tenant x86 public clouds, potentially leading to DoS or RCE attacks. It was patched on June 19th.
원문 보기 →