
Linuxでまた権限昇格の脆弱性。"Fragnasia" (CVE-2025-46300)はDirty Frag亜種で、XFRM ESP-in-TCPサブシステムのロジックバグに起因するページキャッシュメモリへの書き込みプリミティブ。PoC(攻撃の概念実証コード)公開あり。
Post summary
The announcement reports a privilege‑escalation vulnerability in Linux (CVE‑2025‑46300) that is a Dirty Frag variant exploiting a logic bug in XFRM ESP‑in‑TCP, and confirms the release of a Proof‑of‑Concept code.

