CVE detail
CVE-2026-15816
A flaw was found in dracut. The die() error-handling function writes its message into a shell script under the initramfs emergency-hook directory without properly shell-quoting it. When the message contains data derived from the DHCP ROOT_PATH option, an attacker on the adjacent network who controls a rogue DHCP server can inject a command-substitution sequence that executes as root the next time dracut sources its emergency hook scripts during standard boot-failure handling.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 17.9 · diversity 8.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 5
- within the 30d window
- Peak daily
- 5
- highest bucket
Evidence
Source links by recency
5 source links · newest first
No excerpt available.
Exploitgithub.comAug 7, 2026, 11:17 AMNo excerpt available.
Exploitgithub.comAug 7, 2026, 11:17 AM- https://bugzilla.redhat.com/show_bug.cgi?id=2500889bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comAug 7, 2026, 11:17 AM - https://bugzilla.redhat.com/show_bug.cgi?id=2459963bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comAug 7, 2026, 11:17 AM - https://access.redhat.com/security/cve/CVE-2026-15816access.redhat.com
No excerpt available.
Exploitaccess.redhat.comAug 7, 2026, 11:17 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-71993CVSS 9.3 · Critical
MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the openvpn function that allows remote attackers to execute arbitrary commands on…
- CVE-2026-71992CVSS 9.3 · Critical
MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the macfilter function that allows remote attackers to execute arbitrary commands o…
- CVE-2026-71991CVSS 9.3 · Critical
MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function used for Telnet configuration that allows remote attackers t…
- CVE-2026-71990CVSS 9.3 · Critical
MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function used for SSH configuration that allows remote attackers to e…
- CVE-2026-71989CVSS 9.3 · Critical
MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the porTrigger function that allows remote attackers to execute arbitrary commands…
- CVE-2026-71988CVSS 9.3 · Critical
MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the portFw function that allows remote attackers to execute arbitrary commands on t…