Debian Linux Kernel Privilege Escalation Flaws
ANSSI advises patching multiple Debian trixie Linux kernel vulnerabilities that allow local privilege escalation.
ANSSI (CERT-FR) published an advisory covering multiple vulnerabilities discovered in the Linux kernel as packaged for Debian trixie, affecting versions prior to 2.41.5-0+deb13u1. The flaws allow an attacker with local access to escalate privileges on affected systems. No indication of active exploitation is provided in the advisory.
Five CVEs are referenced (CVE-2026-13595, CVE-2026-27456, CVE-2026-53612, CVE-2026-53613, CVE-2026-53614). Debian has released a security update (DSA msg00353, 14 August 2026) addressing these issues. Administrators running Debian trixie should apply the updated kernel package as soon as possible to remediate the privilege escalation risk.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1068
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free