Disable the esp4 and esp6 kernel modules to mitigate CVE-2026-43284. Disable the rxrpc kernel module to mitigate CVE-2026-43500. Apply principle of least privilege for local users. Follow process control network hardening guidelines (physical isolation, no direct Internet connections). Monitor for vendor-supplied patches.
Quick answers
What is CVE-2026-43500?
Disable the esp4 and esp6 kernel modules to mitigate CVE-2026-43284. Disable the rxrpc kernel module to mitigate CVE-2026-43500. Apply principle of least privilege for local users. Follow process control network hardening guidelines (physical isolation, no direct Internet connections). Monitor for vendor-supplied patches.
How severe is CVE-2026-43500?
high, CVSS 8.8
Is CVE-2026-43500 known to be exploited?
It is not marked known-exploited in this record.
How should CVE-2026-43500 be mitigated?
Disable the esp4 and esp6 kernel modules to mitigate CVE-2026-43284. Disable the rxrpc kernel module to mitigate CVE-2026-43500. Apply principle of least privilege for local users. Follow process control network hardening guidelines (physical isolation, no direct Internet connections). Monitor for vendor-supplied patches.
CVSS
8.8
Vendor
Hitachi Energy
Published
Sep 30, 2026 · 08:42
Patch
Unknown / not confirmed
Affected products
Hitachi Energy APM Edge Product
Mitigation
Disable the esp4 and esp6 kernel modules to mitigate CVE-2026-43284. Disable the rxrpc kernel module to mitigate CVE-2026-43500. Apply principle of least privilege for local users. Follow process control network hardening guidelines (physical isolation, no direct Internet connections). Monitor for vendor-supplied patches.
CISA has issued an industrial control systems advisory regarding two vulnerabilities, tracked as CVE-2026-43284 and CVE-2026-43500, affecting the Hitachi Energy APM Edge product versions 6.10 and prior. The flaws reside in Linux kernel subsystems—IPsec ESP (esp4, esp6) and RxRPC—and could allow a local unprivileged user to escalate privileges to root, potentially compromising confidentiality, integrity, and availability. No public exploitation has been confirmed, and mitigation currently centers on disabling the affected kernel modules.