GCP COS Privilege Escalation: CVE-2026-23268 CrackArmor
đ High |Â Source: GCP Compute Engine Security Bulletins A Linux kernel vulnerability, CVE-2026-23268 (dubbed âCrackArmorâ), affects the AppArmor security module and can be exploited to achieve privilege escalation on Google Cloudâs Container-Optimized OS (COS) nodes. This is particularly relevant for workloads running on GKE, Dataflow, or Cloud SQL that rely on COS as their underlying node OS. Unpatched nodes could allow an attacker to escalate privileges within containerised environments, potentially breaking out of intended security boundaries. ...