
Two CVEs just patched by @Oracle , credited to me: CVE-2026-21996 , CVE-2026-35233 Root-privileged parser eating attacker-supplied ELF. Classic trust-boundary bugs. Advisory: https://linux.oracle.com/errata/ELSA-2026-50250.html Write-up: https://medium.com/@vis_hacker/hunting-bugs-in-oracles-userspace-dtrace-cve-2026-21996-and-cve-2026-35233-56e3704c9c0b
Post summary
Oracle has released patches for CVE‑2026‑21996 and CVE‑2026‑35233, with the vulnerability involving a root‑privileged parser that improperly processes attacker‐supplied ELF binaries—details and a write‑up are available via the provided links.




