Vulnerability in Mitel Linux Virtual Machine Due to Unsafe Module Loading
CVE-2026-104809
8.4HIGH
What is CVE-2026-104809?
A vulnerability has been identified in Mitel's Linux virtual machine that allows an attacker to leverage a predictable module name to load a malicious .so file instead of the legitimate module. The loading process fails to sufficiently verify the file's origin and integrity, enabling an attacker to execute code with the same privileges as the compromised process. This can lead to a complete system compromise and unauthorized access to sensitive information.
Affected Version(s)
Mitel MiVoice Office 400 Linux 11.0.96.0