news.mlab.sh
Vulnerabilities
Vulnerability

CVE-2026-74676

Reference data from vuln.mlab.sh, coverage from our own index.

CVSS
5.5 Medium
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS
0.18%
Risk score
4.0
Published
2026-08-22
Status
Published

In the Linux kernel, the following vulnerability has been resolved: vt: add permission check for KDSKBMETA ioctl KDSKBMETA modifies keyboard meta mode but lacks the !perm check that all other keyboard setter ioctls in vt_k_ioctl() enforce, allowing a process to change meta mode on a non-controlling console without authorization. A flaw was found in the Linux kernel. A missing permission check in the KDSKBMETA ioctl (input/output control) allows a local process to modify the keyboard meta mode on a non-controlling console without proper authorization. This could enable an attacker to make unauthorized changes to system keyboard settings.

Weaknesses

CWE-1220

Coverage 1

Advisories and references