Local Privilege Escalation Vulnerability in Ubuntu Linux 6.8 GA
CVE-2025-13350
What is CVE-2025-13350?
A vulnerability in Ubuntu Linux 6.8 GA arises from the legacy AF_UNIX garbage collector retaining improper handling of orphaned MSG_OOB sockets. When these sockets trigger the garbage collector, a use-after-free condition occurs, leading to a local privilege escalation scenario. This issue allows unauthorized access, as the garbage collector expects certain references which are not present, resulting in potential exposure to sensitive data and system manipulation. Systems running versions earlier than 6.8.0-84.84 are at risk, while updates addressing this flaw are imperative for maintaining system integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Ubuntu Linux 6.8.0-56.58 < 6.8.0-84.84
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
