In the Linux kernel, the following vulnerability has been resolved:
lsm: hold credguardmutex for lsmsetself_attr()
Just as procpidattr_write() already does before calling the LSM hook. This only matters for SELinux and AppArmor which check whether the process is being ptraced and if so, whether to allow the transition.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64111.json",
"cna_assigner": "Linux"
}