Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

A 19-year-old privilege escalation flaw in the Linux kernel’s CIFS subsystem, dubbed CIFSwitch, allows any unprivileged local user to gain full root access on affected systems. Enterprise Linux distributions including CentOS Stream 9, Rocky Linux 9, AlmaLinux 9, and SLES 15 SP7 are confirmed vulnerable in default configurations, and a public proof-of-concept exploit is already available. (Note: As of 2026-05-28, no CVE identifier had been formally assigned; a CVE may be assigned retroactively. Monitor NVD and vendor advisories for assignment.) Organizations running these distributions with cifs-utils installed face immediate risk of complete system compromise from any authenticated local user or process.

Author

Tech Jacks Solutions