SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2025-36940

HIGH · CVSS 8.8 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-08-24 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the zircon kernel pager proxy of Fuchsia could allow attackers to escalate privileges from userspace to kernel level. This flaw poses a significant risk to systems running Fuchsia, particularly for applications with elevated privileges. Organizations utilizing Fuchsia should prioritize addressing this vulnerability to mitigate potential exploitation.

CVE
CVE-2025-36940
Severity
HIGH
CVSS
8.8
EPSS
0.22%

Original NVD Description

Use-After-Free vulnerability in a zircon kernel pager proxy (Fuchsia), which could lead to a Privilege Escalation from Userspace to Kernel (AP)