---
cve: "CVE-2026-68153"
severity: "HIGH"
cvss: 7.8
epss: "0.1%"
vendor: "Linux"
kev: false
exploited: false
published: "2026-08-10 11:59:19"
tags: [cve, security, high]
source: tsecurity.de CVE-Dossier
exported: "2026-09-29T13:59:47+02:00"
---

# CVE-2026-68153

> 7.8 HIGH

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

libceph: remove debugfs files before client teardown

ceph_destroy_client() tears down the monitor client before removing
the per-client debugfs files. A concurrent read of the monmap debugfs
file can enter monmap_show() after ceph_monc_stop() has freed
monc->monmap, triggering a use-after-free.

Remove the debugfs files before stopping the OSD and monitor clients.
debugfs_remove() drains active handlers and prevents new accesses, so
the debugfs callbacks can no longer race the rest of client teardown.

## CVSS-Vektor

```
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Lokal | good |
| AC Komplexität | Gering | bad |
| PR Privilegien | Gering | warn |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Hoch | bad |
| A Verfügbarkeit | Hoch | bad |

## Patch verfügbar (OSV)

- Kernel ≥ 5.10.265
- Kernel ≥ 5.15.216
- Kernel ≥ 6.1.183
- Kernel ≥ 6.6.148
- Kernel ≥ 6.12.101
- Kernel ≥ 6.18.42
- Kernel ≥ 7.1.6

## BSI-Hinweise (deutsch)

- [Linux Kernel: Mehrere Schwachstellen](https://wid.cert-bund.de/portal/wid/sicherheitshinweis/WID-SEC-W-2026-2730) — _BSI-Einstufung: hoch_
  Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen, darunter möglicherweise die Ausführung von beliebigem Code, die Ausweitung von Berechtigungen, die Offenlegung von Informationen, die Manipulation von Daten oder Denial-of-Service-Zustände.

## Referenzen

- <https://git.kernel.org/stable/c/ac78549d186090ee7125d28c3a8c376573b36194>
- <https://git.kernel.org/stable/c/463a264e9094384112a5c8b46f0a9ddaf8566904>
- <https://git.kernel.org/stable/c/fe46b7e06f14f6f94766832df309b249cb689d27>
- <https://git.kernel.org/stable/c/fc1010e7e0204ece6cc0f9af4f473e9553535eab>
- <https://git.kernel.org/stable/c/d3dc8889d39a676bf840132bd5c5c48cb0daba23>
- <https://git.kernel.org/stable/c/8f5a3abc54ba24dbceb14cc3a719908c4f688091>
- <https://git.kernel.org/stable/c/b9fedda2f628e030384228de0dafc574b7fb0c2f>
- <https://git.kernel.org/stable/c/e4c804726c4afce3ba648b982d564f6af2cfa328>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-68153) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI WID (CSAF)_
