CVE-2026-43284General(linux / linux_kernel)

CRITICALCVSS 8.8 · HIGH

Exploitation observed; activity peaked at 73 mentions and remains active

Immediate actions

  • Patch linux linux_kernel systems immediately
  • Assume compromise if assets are exposed
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: Immediate (within 24h)

NVD description

In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attach pages from a pipe directly to an skb. TCP marks such skbs with SKBFL_SHARED_FRAG after skb_splice_from_iter(), so later paths that may modify packet data can first make a private copy. The IPv4/IPv6 datagram append paths did not set this flag when splicing pages into UDP skbs. That leaves an ESP-in-UDP packet made from shared pipe pages looking like an ordinary uncloned nonlinear skb. ESP input then takes the no-COW fast path for uncloned skbs without a frag_list and decrypts in place over data that is not owned privately by the skb. Mark IPv4/IPv6 datagram splice frags with SKBFL_SHARED_FRAG, matching TCP. Also make ESP input fall back to skb_cow_data() when the flag is present, so ESP does not decrypt externally backed frags in place. Private nonlinear skb frags still use the existing fast path. This intentionally does not change ESP output. In esp_output_head(), the path that appends the ESP trailer to existing skb tailroom without calling skb_cow_data() is not reachable for nonlinear skbs: skb_tailroom() returns zero when skb->data_len is nonzero, while ESP tailen is positive. Thus ESP output will either use the separate destination-frag path or fall back to skb_cow_data().

9.0/ 10 priority

Sources & remediation

Exploit / PoC references
Weakness type (CWE)
CWE-123

Priority

CRITICAL

Exploitation

ACTIVE

PoC

YES

Patch

AVAILABLE

Momentum

DECLINING

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • linux_kernel

Threat summary

  • Active exploitation appears in 38 classified signals
  • Public PoC and exploit tooling are both present
  • Patch or workaround signal is available
  • 301 mentions across 44 observed days

What's happening

  • Active exploitation reported across 38 signals
  • Exploit tool or code specified in 21 signals
  • PoC mentioned or linked in 65 signals
  • Patch or workaround mentioned in 118 signals
  • Technical details provided in 155 signals
  • General: 81 classified signals
  • Disclosure: 69 classified signals
  • Peaked 43d ago at 73 mentions (2026-05-08); latest day: 1
  • 301 total mentions across 44 days

Affected systems

Vendors
Products
linux_kernel

Deep dive

Activity timeline301 mentions / 44d
018375573Mentions · 2026-05-08: 73Mentions · 2026-05-09: 51Mentions · 2026-05-10: 15Mentions · 2026-05-11: 44Mentions · 2026-05-12: 31Mentions · 2026-05-13: 15Mentions · 2026-05-14: 9Mentions · 2026-05-15: 7Mentions · 2026-05-16: 6Mentions · 2026-05-17: 1Mentions · 2026-05-18: 9Mentions · 2026-05-19: 2Mentions · 2026-05-20: 1Mentions · 2026-05-22: 2Mentions · 2026-05-25: 1Mentions · 2026-05-26: 1Mentions · 2026-05-27: 2Mentions · 2026-05-28: 1Mentions · 2026-06-01: 1Mentions · 2026-06-05: 1Mentions · 2026-06-07: 2Mentions · 2026-06-09: 1Mentions · 2026-06-15: 2Mentions · 2026-06-21: 1Mentions · 2026-06-26: 2Mentions · 2026-06-27: 1Mentions · 2026-06-28: 1Mentions · 2026-06-29: 1Mentions · 2026-07-22: 1Mentions · 2026-07-29: 1Mentions · 2026-07-30: 1Mentions · 2026-08-03: 1Mentions · 2026-08-14: 1Mentions · 2026-08-26: 1Mentions · 2026-08-31: 2Mentions · 2026-09-05: 1Mentions · 2026-09-07: 1Mentions · 2026-09-11: 1Mentions · 2026-09-13: 1Mentions · 2026-09-16: 1Mentions · 2026-09-23: 1Mentions · 2026-09-25: 1Mentions · 2026-10-01: 1Mentions · 2026-10-08: 1PoC Mentioned / Linked · 2026-05-08: 15PoC Mentioned / Linked · 2026-05-09: 13PoC Mentioned / Linked · 2026-05-10: 4PoC Mentioned / Linked · 2026-05-11: 12PoC Mentioned / Linked · 2026-05-12: 2PoC Mentioned / Linked · 2026-05-13: 4PoC Mentioned / Linked · 2026-05-14: 2PoC Mentioned / Linked · 2026-05-15: 3PoC Mentioned / Linked · 2026-05-18: 1PoC Mentioned / Linked · 2026-05-20: 1PoC Mentioned / Linked · 2026-06-05: 1PoC Mentioned / Linked · 2026-06-21: 1PoC Mentioned / Linked · 2026-06-26: 1PoC Mentioned / Linked · 2026-07-29: 1PoC Mentioned / Linked · 2026-09-05: 1PoC Mentioned / Linked · 2026-09-07: 1PoC Mentioned / Linked · 2026-09-11: 1PoC Mentioned / Linked · 2026-09-16: 1Exploit Tool / Code · 2026-05-08: 7Exploit Tool / Code · 2026-05-09: 4Exploit Tool / Code · 2026-05-10: 1Exploit Tool / Code · 2026-05-11: 1Exploit Tool / Code · 2026-05-12: 1Exploit Tool / Code · 2026-05-13: 3Exploit Tool / Code · 2026-05-14: 1Exploit Tool / Code · 2026-06-26: 1Exploit Tool / Code · 2026-07-29: 1Exploit Tool / Code · 2026-09-07: 1Active Exploitation · 2026-05-08: 4Active Exploitation · 2026-05-09: 6Active Exploitation · 2026-05-10: 2Active Exploitation · 2026-05-11: 10Active Exploitation · 2026-05-12: 8Active Exploitation · 2026-05-13: 3Active Exploitation · 2026-06-05: 1Active Exploitation · 2026-06-09: 1Active Exploitation · 2026-08-14: 1Active Exploitation · 2026-08-26: 1Active Exploitation · 2026-09-13: 1Patch / Workaround · 2026-05-08: 29Patch / Workaround · 2026-05-09: 23Patch / Workaround · 2026-05-10: 2Patch / Workaround · 2026-05-11: 20Patch / Workaround · 2026-05-12: 14Patch / Workaround · 2026-05-13: 7Patch / Workaround · 2026-05-14: 3Patch / Workaround · 2026-05-15: 5Patch / Workaround · 2026-05-16: 4Patch / Workaround · 2026-05-17: 1Patch / Workaround · 2026-05-18: 2Patch / Workaround · 2026-05-19: 2Patch / Workaround · 2026-05-25: 1Patch / Workaround · 2026-05-26: 1Patch / Workaround · 2026-05-27: 1Patch / Workaround · 2026-06-07: 1Patch / Workaround · 2026-06-26: 1Patch / Workaround · 2026-07-30: 1Technical Details · 2026-05-08: 35Technical Details · 2026-05-09: 30Technical Details · 2026-05-10: 11Technical Details · 2026-05-11: 27Technical Details · 2026-05-12: 9Technical Details · 2026-05-13: 9Technical Details · 2026-05-14: 4Technical Details · 2026-05-15: 2Technical Details · 2026-05-17: 1Technical Details · 2026-05-18: 5Technical Details · 2026-05-19: 1Technical Details · 2026-05-25: 1Technical Details · 2026-05-26: 1Technical Details · 2026-05-27: 1Technical Details · 2026-06-07: 2Technical Details · 2026-06-15: 2Technical Details · 2026-06-21: 1Technical Details · 2026-06-26: 2Technical Details · 2026-07-29: 1Technical Details · 2026-07-30: 1Technical Details · 2026-08-03: 1Technical Details · 2026-08-31: 2Technical Details · 2026-09-05: 1Technical Details · 2026-09-07: 1Technical Details · 2026-09-11: 1Technical Details · 2026-09-13: 1Technical Details · 2026-09-16: 1Technical Details · 2026-09-23: 105-0805-1205-1605-2005-2706-0706-2607-2208-1409-0709-2310-08
Signal classification7 categories
General
8127.1%
Patch
7725.8%
Disclosure
6923.1%
Active Exploitation
3311.0%
PoC
268.7%
Exploit
113.7%
Referenced assets188 URLs
By indicator
Classification over time
DateTotalLabels
2026-05-0873
Active Exploitation3Disclosure22Exploit4General22Patch15PoC7
2026-05-0951
Active Exploitation5Disclosure7Exploit2False Positive2General13Patch16PoC6
2026-05-1015
Active Exploitation2Disclosure5General5Patch1PoC2
2026-05-1144
Active Exploitation9Disclosure6Exploit2General11Patch11PoC5
2026-05-1231
Active Exploitation7Disclosure7General5Patch12
2026-05-1315
Active Exploitation2Disclosure4Exploit1General3Patch4PoC1
2026-05-149
Disclosure1Exploit1General5Patch1PoC1
2026-05-157
Disclosure2General1Patch4
2026-05-166
General3Patch3
2026-05-171
Patch1
2026-05-189
Disclosure4General3Patch2
2026-05-192
Patch2
2026-05-201
Disclosure1
2026-05-222
General2
2026-05-251
Patch1
2026-05-261
Patch1
2026-05-272
Disclosure1Patch1
2026-05-281
General1
2026-06-011
General1
2026-06-051
Active Exploitation1
2026-06-072
Disclosure1Patch1
2026-06-091
Active Exploitation1
2026-06-152
Disclosure2
2026-06-211
PoC1
2026-06-262
Disclosure1Exploit1
2026-06-271
General1
2026-06-281
Disclosure1
2026-06-291
General1
2026-07-221
General1
2026-07-291
PoC1
2026-07-301
Patch1
2026-08-031
General1
2026-08-141
Active Exploitation1
2026-08-261
Active Exploitation1
2026-08-312
Disclosure2
2026-09-051
Disclosure1
2026-09-071
PoC1
2026-09-111
General1
2026-09-131
Active Exploitation1
2026-09-161
PoC1
2026-09-231
Disclosure1
2026-09-251
General1
Full discourse20 posts
  • hsn今天吃什么@hsn8086k
    General

    2026 Linux 重置密码教程大全 - Dirty Cow (CVE-2016-5195) - Dirty Pipe (CVE-2022-0847) - io_uring UAF (CVE-2022-2602) - Copy Fail (CVE-2026-31431) - io_uring ZCRX freelist (CVE-2026-43121) - Dirty Frag (CVE-2026-43284 CVE-2026-43500) - Fragnesia (CVE-2026-46300)

    Post summary

    The text enumerates several CVE identifiers as part of a Linux password reset tutorial, without offering any PoC, exploit code, active exploitation evidence, patches, or technical depth.

    17193111.1K50579.9K
    2.3K followersView on X
  • Ubuntu@ubuntu
    Patch

    Dirty Frag Linux kernel local privilege escalation vulnerability (CVE-2026-43284) mitigations are now available. Read the blog for details: https://ubuntu.com/blog/dirty-frag-linux-vulnerability-fixes-available https://t.co/CCZMC1uzRj

    Post summary

    Ubuntu has released patches for CVE‑2026‑43284, a local privilege escalation bug in the Linux kernel, with details posted on an official blog.

    23303231.0K27293.9K
    704.0K followersView on X
  • hsn今天吃什么@hsn8086k
    General

    Linux 重置密码大全 - Dirty Cow (CVE-2016-5195) - Dirty Pipe (CVE-2022-0847) - io_uring UAF (CVE-2022-2602) - Copy Fail (CVE-2026-31431) - io_uring ZCRX freelist (CVE-2026-43121) - Dirty Frag (CVE-2026-43284 CVE-2026-43500) - Fragnesia (CVE-2026-46300) -PinTheft (CVE-2026-43494)

    Post summary

    The text is a concise list of Linux kernel CVEs, likely used as a reference for password resetting, but it offers no exploitation or patch details.

    43118972036546.3K
    2.3K followersView on X
  • Het Mehta@hetmehtaa
    General

    Them: Linux is most secure OS Me: Yes - Dirty Cow (CVE-2016-5195) - Dirty Pipe (CVE-2022-0847) - io_uring UAF (CVE-2022-2602) - Copy Fail (CVE-2026-31431) - io_uring ZCRX freelist (CVE-2026-43121) - Dirty Frag (CVE-2026-43284 CVE-2026-43500) - Fragnesia (CVE-2026-46300)

    Post summary

    The user lists several Linux CVE identifiers without giving any further context, technical details, or evidence of exploitation or mitigation.

    566618598272159.8K
    42.2K followersView on X
  • Canonical@Canonical
    Patch

    Dirty Frag Linux kernel local privilege escalation vulnerability (CVE-2026-43284) mitigations are now available. Read the blog for details: https://ubuntu.com/blog/dirty-frag-linux-vulnerability-fixes-available https://t.co/YaHgHaSLkp

    Post summary

    The post announces that mitigations for CVE-2026-43284 are now available, providing a link to a blog with fixes, with no evidence of active exploitation or PoC.

    107312586914.4K
    111.1K followersView on X
  • hito@_hito_
    General

    記憶バッファに収まらないんですが…… ・Copy Fail / CVE-2026-31431 ・Dirty Frag / CVE-2026-43284, CVE-2026-43500 ・Fragnesia / CVE-2026-46300

    Post summary

    The text lists several CVE identifiers alongside project names but provides no further details about the vulnerabilities, proof of concept, exploitation status, or mitigation.

    236323712028.8K
    2.2K followersView on X
  • Microsoft Threat Intelligence@MsftSecIntel
    Disclosure

    A newly disclosed Linux local privilege escalation vulnerability known as “Dirty Frag” enables escalation from an unprivileged user to root through vulnerable kernel networking and memory-fragment handling components, including esp4, esp6 (CVE-2026-43284), and rxrpc (CVE-2026-43500). Similar to the previously disclosed Copy Fail vulnerability (CVE-2026-31431), the exploit attempts to manipulate Linux page cache behavior to achieve privilege escalation. However, Dirty Frag introduces additional attack paths that expand exploitation opportunities and improve reliability. Get technical details, exploit scenarios, and mitigation and detection guidance from this Microsoft Defender Research blog: https://msft.it/6015v3WNc

    Post summary

    Microsoft has newly disclosed the Linux local privilege escalation flaw “Dirty Frag” (CVE-2026-43284, CVE-2026-43500), explaining how it abuses kernel networking and page‑cache behaviors, with further technical guidance available via a Microsoft Defender Research blog.

    64431435829.4K
    196.1K followersView on X
  • yousukezan@yousukezan
    Exploit

    Linuxカーネルの権限昇格の脆弱性「DirtyClone」が公開され、JFrog Security Researchは6月25日に動作するエクスプロイトを公開した。CVE-2026-43503が割り当てられており、ローカルユーザーがroot権限を取得できる可能性がある。 原因は、ネットワークパケットを複製する際に、ファイルと共有されているメモリを示すフラグが失われることにある。攻撃者はIPsec経由で複製されたパケットを利用し、メモリ上に読み込まれた/usr/bin/suなどの実行ファイルを書き換え、次回実行時にroot権限を取得できる。 変更はディスク上のファイルには反映されず、カーネルのページキャッシュ内だけで発生するため、ファイル整合性チェックでは検出されず、再起動すると元に戻るという。 攻撃にはCAP_NET_ADMIN権限が必要だが、DebianやFedoraではデフォルトで有効な非特権ユーザー名前空間を利用して取得できる。一方、Ubuntu 24.04以降ではAppArmorにより標準的な攻撃手法は制限される。 DirtyCloneは、Copy Fail(CVE-2026-31431)、DirtyFrag(CVE-2026-43284、CVE-2026-43500)、Fragnesia(CVE-2026-46300)に続く4件目の関連脆弱性となる。修正は5月21日にメインラインへ取り込まれ、Linux v7.1-rc5以降および安定版・LTSへバックポートされている。更新できない場合は、非特権ユーザー名前空間を無効化するか、IPsec関連モジュールを無効化することで攻撃面を減らせるとしている。 https://thehackernews.com/2026/06/new-dirtyclone-linux-kernel-flaw-lets.html

    Post summary

    The post announces the DirtyClone privilege‑elevation flaw (CVE‑2026‑43503) with a publicly released functional exploit, explains its technical workings, and notes available patches and mitigations.

    0464115679.5K
    14.8K followersView on X
  • 0xdf@0xdf_
    Exploit

    Diving into Dirty Frag, the second Linux page-cache local privesc in two weeks. CVE-2026-43284 + CVE-2026-43500 provide full distro coverage. I walk through both variants, the broken disclosure, and demo both versions on the HTB Snapped machine. https://www.youtube.com/watch?v=B5eUI_e7iwE

    Post summary

    The author demonstrates both variants of the Dirty Frag Linux page‑cache privilege escalation (CVE‑2026‑43284 and CVE‑2026‑43500) on an HTB machine, covering all distributions.

    23101246614.2K
    26.6K followersView on X
  • Dark Web Informer@DarkWebInformer
    PoC

    ‼️ Dirty Frag: A Universal Linux Local Privilege Escalation via Page-Cache Write Primitives GitHub: https://github.com/V4bel/dirtyfrag Patches: https://almalinux.org/blog/2026-05-07-dirty-frag/ CVE-2026-43284: A page-cache write flaw in the Linux kernel's xfrm-ESP (IPsec) subsystem that lets a local user corrupt read-only file pages via in-place decryption on shared skb fragments CVE-2026-43500: A sibling page-cache write flaw in the Linux kernel's RxRPC subsystem (AFS protocol) where the same fast-path pattern enables arbitrary plaintext writes into attacker-chosen pages, escalating to root

    Post summary

    A new Linux local privilege escalation vulnerability (CVE-2026-43284 & CVE-2026-43500) has been disclosed, with PoC code on GitHub and patches available from AlmaLinux.

    42411384918.7K
    222.6K followersView on X
  • Umbrel ☂️@umbrel
    Patch

    Another day, another Linux CVE. Truly wild times. So here's umbrelOS 1.7.3 which patches DirtyFrag (CVE-2026-43284 and CVE-2026-43500). The vulnerability hits the news. You hit "Install now" and you're already patched. You're welcome. 🤝 https://t.co/ZuQQigLjdO

    Post summary

    The tweet announces that umbrelOS 1.7.3 patches CVE-2026-43284 and CVE-2026-43500, encouraging users to install the update, with no mention of exploits or technical details.

    1513110627.7K
    73.5K followersView on X
  • Het Mehta@hetmehtaa
    Disclosure

    Last week in Linux: CVE-2026-43485: nouveau/gsp: drop WARN_ON in ACPI probes 2026-05-13 15:08 UTC CVE-2026-43484: mmc: core: Avoid bitfield RMW for claim/retune flags 2026-05-13 15:08 UTC CVE-2026-43483: KVM: SVM: Set/clear CR8 write interception when AVIC is (de)activated 2026-05-13 15:08 UTC CVE-2026-43482: sched_ext: Disable preemption between scx_claim_exit() and kicking helper work 2026-05-13 15:08 UTC CVE-2026-43481: net-shapers: don't free reply skb after genlmsg_reply() 2026-05-13 15:08 UTC CVE-2026-43480: ASoC: amd: acp3x-rt5682-max9836: Add missing error check for clock acquisition 2026-05-13 15:08 UTC CVE-2026-43479: net: usb: lan78xx: fix WARN in __netif_napi_del_locked on disconnect 2026-05-13 15:08 UTC CVE-2026-43478: ASoC: codecs: rt1011: Use component to get the dapm context in spk_mode_put 2026-05-13 15:08 UTC CVE-2026-43489: liveupdate: luo_file: remember retrieve() status 2026-05-13 15:08 UTC CVE-2026-43488: usb: xhci: Prevent interrupt storm on host controller error (HCE) 2026-05-13 15:08 UTC CVE-2026-43487: ata: libata-core: Disable LPM on ST1000DM010-2EP102 2026-05-13 15:08 UTC CVE-2026-43486: arm64: contpte: fix set_access_flags() no-op check for SMMU/ATS faults 2026-05-13 15:08 UTC CVE-2026-43476: iio: chemical: sps30_i2c: fix buffer size in sps30_i2c_read_meas() 2026-05-13 15:08 UTC CVE-2026-43477: drm/i915/vrr: Configure VRR timings after enabling TRANS_DDI_FUNC_CTL 2026-05-13 15:08 UTC CVE-2026-43500: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present 2026-05-11 6:26 UTC CVE-2026-43452: netfilter: x_tables: guard option walkers against 1-byte tail reads 2026-05-08 14:23 UTC CVE-2026-43461: spi: amlogic: spifc-a4: Fix DMA mapping error handling 2026-05-08 14:23 UTC CVE-2026-43460: spi: rockchip-sfc: Fix double-free in remove() callback 2026-05-08 14:23 UTC CVE-2026-43459: ASoC: soc-core: flush delayed work before removing DAIs and widgets 2026-05-08 14:23 UTC CVE-2026-43458: serial: caif: hold tty->link reference in ldisc_open and ser_release 2026-05-08 14:23 UTC CVE-2026-43457: mctp: i2c: fix skb memory leak in receive path 2026-05-08 14:23 UTC CVE-2026-43456: bonding: fix type confusion in bond_setup_by_slave() 2026-05-08 14:23 UTC CVE-2026-43455: mctp: route: hold key->lock in mctp_flow_prepare_output() 2026-05-08 14:23 UTC CVE-2026-43475: scsi: storvsc: Fix scheduling while atomic on PREEMPT_RT 2026-05-08 14:23 UTC CVE-2026-43474: fs: init flags_valid before calling vfs_fileattr_get 2026-05-08 14:23 UTC CVE-2026-43473: scsi: mpi3mr: Add NULL checks when resetting request and reply queues 2026-05-08 14:23 UTC CVE-2026-43472: unshare: fix unshare_fs() handling 2026-05-08 14:23 UTC CVE-2026-43454: netfilter: nf_tables: Fix for duplicate device in netdev hooks 2026-05-08 14:23 UTC CVE-2026-43471: scsi: ufs: core: Fix possible NULL pointer dereference in ufshcd_add_command_trace() 2026-05-08 14:23 UTC CVE-2026-43470: nfs: return EISDIR on nfs3_proc_create if d_alias is a dir 2026-05-08 14:23 UTC CVE-2026-43469: xprtrdma: Decrement re_receiving on the early exit paths 2026-05-08 14:23 UTC CVE-2026-43468: net/mlx5: Fix deadlock between devlink lock and esw->wq 2026-05-08 14:23 UTC CVE-2026-43467: net/mlx5: Fix crash when moving to switchdev mode 2026-05-08 14:23 UTC CVE-2026-43466: net/mlx5e: Fix DMA FIFO desync on error CQE SQ recovery 2026-05-08 14:23 UTC CVE-2026-43465: net/mlx5e: RX, Fix XDP multi-buf frag counting for striding RQ 2026-05-08 14:23 UTC CVE-2026-43464: net/mlx5e: RX, Fix XDP multi-buf frag counting for legacy RQ 2026-05-08 14:23 UTC CVE-2026-43463: rxrpc, afs: Fix missing error pointer check after rxrpc_kernel_lookup_peer() 2026-05-08 14:23 UTC CVE-2026-43462: net: spacemit: Fix error handling in emac_tx_mem_map() 2026-05-08 14:23 UTC CVE-2026-43453: netfilter: nft_set_pipapo: fix stack out-of-bounds read in pipapo_drop() 2026-05-08 14:23 UTC CVE-2026-43417: sched/mmcid: Handle vfork()/CLONE_VM correctly 2026-05-08 14:22 UTC CVE-2026-43426: usb: renesas_usbhs: fix use-after-free in ISR during device removal 2026-05-08 14:22 UTC CVE-2026-43425: usb: image: mdc800: kill download URB on timeout 2026-05-08 14:22 UTC CVE-2026-43424: usb: gadget: f_tcm: Fix NULL pointer dereferences in nexus handling 2026-05-08 14:22 UTC CVE-2026-43423: usb: gadget: f_ncm: Fix atomic context locking issue 2026-05-08 14:22 UTC CVE-2026-43422: usb: legacy: ncm: Fix NPE in gncm_bind 2026-05-08 14:22 UTC CVE-2026-43421: usb: gadget: f_ncm: Fix net_device lifecycle with device_move 2026-05-08 14:22 UTC CVE-2026-43451: netfilter: nfnetlink_queue: fix entry leak in bridge verdict error path 2026-05-08 14:23 UTC CVE-2026-43450: netfilter: nfnetlink_cthelper: fix OOB read in nfnl_cthelper_dump_table() 2026-05-08 14:22 UTC CVE-2026-43449: nvme-pci: Fix slab-out-of-bounds in nvme_dbbuf_set 2026-05-08 14:22 UTC CVE-2026-43448: nvme-pci: Fix race bug in nvme_poll_irqdisable() 2026-05-08 14:22 UTC CVE-2026-43447: iavf: fix PTP use-after-free during reset 2026-05-08 14:22 UTC CVE-2026-43420: ceph: fix i_nlink underrun during async unlink 2026-05-08 14:22 UTC CVE-2026-43446: accel/amdxdna: Fix runtime suspend deadlock when there is pending job 2026-05-08 14:22 UTC CVE-2026-43445: e1000/e1000e: Fix leak in DMA error cleanup 2026-05-08 14:22 UTC CVE-2026-43444: drm/amdkfd: Unreserve bo if queue update failed 2026-05-08 14:22 UTC CVE-2026-43443: ASoC: amd: acp-mach-common: Add missing error check for clock acquisition 2026-05-08 14:22 UTC CVE-2026-43442: io_uring: fix physical SQE bounds check for SQE_MIXED 128-byte ops 2026-05-08 14:22 UTC CVE-2026-43441: net: bonding: Fix nd_tbl NULL dereference when IPv6 is disabled 2026-05-08 14:22 UTC CVE-2026-43440: net/mana: Null service_wq on setup error to prevent double destroy 2026-05-08 14:22 UTC CVE-2026-43439: cgroup: fix race between task migration and iteration 2026-05-08 14:22 UTC CVE-2026-43438: sched_ext: Remove redundant css_put() in scx_cgroup_init() 2026-05-08 14:22 UTC CVE-2026-43437: ALSA: pcm: fix use-after-free on linked stream runtime in snd_pcm_drain() 2026-05-08 14:22 UTC CVE-2026-43419: ceph: fix memory leaks in ceph_mdsc_build_path() 2026-05-08 14:22 UTC CVE-2026-43436: ALSA: usb-audio: Check endpoint numbers at parsing Scarlett2 mixer interfaces 2026-05-08 14:22 UTC CVE-2026-43435: rust_binder: fix oneway spam detection 2026-05-08 14:22 UTC CVE-2026-43434: rust_binder: check ownership before using vma 2026-05-08 14:22 UTC CVE-2026-43433: rust_binder: avoid reading the written value in offsets array 2026-05-08 14:22 UTC CVE-2026-43432: usb: xhci: Fix memory leak in xhci_disable_slot() 2026-05-08 14:22 UTC CVE-2026-43431: xhci: Fix NULL pointer dereference when reading portli debugfs files 2026-05-08 14:22 UTC CVE-2026-43430: usb: yurex: fix race in probe 2026-05-08 14:22 UTC CVE-2026-43429: USB: usbtmc: Use usb_bulk_msg_killable() with user-specified timeouts 2026-05-08 14:22 UTC CVE-2026-43428: USB: core: Limit the length of unkillable synchronous timeouts 2026-05-08 14:22 UTC CVE-2026-43427: usb: class: cdc-wdm: fix reordering issue in read code path 2026-05-08 14:22 UTC CVE-2026-43418: sched/mmcid: Prevent CID stalls due to concurrent forks 2026-05-08 14:22 UTC CVE-2026-43383: net/tcp-md5: Fix MAC comparison to be constant-time 2026-05-08 14:21 UTC CVE-2026-43392: sched_ext: Fix starvation of scx_enable() under fair-class saturation 2026-05-08 14:22 UTC CVE-2026-43391: nsfs: tighten permission checks for handle opening 2026-05-08 14:22 UTC CVE-2026-43390: nstree: tighten permission checks for listing 2026-05-08 14:21 UTC CVE-2026-43389: mm: memfd_luo: always dirty all folios 2026-05-08 14:21 UTC CVE-2026-43388: mm/damon/core: clear walk_control on inactive context in damos_walk() 2026-05-08 14:21 UTC CVE-2026-43387: staging: rtl8723bs: properly validate the data in rtw_get_ie_ex() 2026-05-08 14:21 UTC CVE-2026-43416: powerpc, perf: Check that current->mm is alive before getting user callchain 2026-05-08 14:22 UTC CVE-2026-43415: scsi: ufs: core: Fix SError in ufshcd_rtc_work() during UFS suspend 2026-05-08 14:22 UTC CVE-2026-43414: scsi: qla2xxx: Completely fix fcport double free 2026-05-08 14:22 UTC CVE-2026-43413: scsi: hisi_sas: Fix NULL pointer exception during user_scan() 2026-05-08 14:22 UTC CVE-2026-43386: staging: rtl8723bs: fix potential out-of-bounds read in rtw_restruct_wmm_ie 2026-05-08 14:21 UTC CVE-2026-43412: ASoC: qcom: qdsp6: Fix q6apm remove ordering during ADSP stop and start 2026-05-08 14:22 UTC CVE-2026-43411: tipc: fix divide-by-zero in tipc_sk_filter_connect() 2026-05-08 14:22 UTC CVE-2026-43410: firmware: stratix10-rsu: Fix NULL pointer dereference when RSU is disabled 2026-05-08 14:22 UTC CVE-2026-43409: kprobes: avoid crash when rmmod/insmod after ftrace killed 2026-05-08 14:22 UTC CVE-2026-43408: ceph: add a bunch of missing ceph_path_info initializers 2026-05-08 14:22 UTC CVE-2026-43407: libceph: Fix potential out-of-bounds access in ceph_handle_auth_reply() 2026-05-08 14:22 UTC CVE-2026-43406: libceph: prevent potential out-of-bounds reads in process_message_header() 2026-05-08 14:22 UTC CVE-2026-43405: libceph: Use u32 for non-negative values in ceph_monmap_decode() 2026-05-08 14:22 UTC CVE-2026-43404: mm: Fix a hmm_range_fault() livelock / starvation problem 2026-05-08 14:22 UTC CVE-2026-43403: nsfs: tighten permission checks for ns iteration ioctls 2026-05-08 14:22 UTC CVE-2026-43385: net: Fix rcu_tasks stall in threaded busypoll 2026-05-08 14:21 UTC CVE-2026-43402: kthread: consolidate kthread exit paths to prevent use-after-free 2026-05-08 14:22 UTC CVE-2026-43401: cpufreq: intel_pstate: Fix NULL pointer dereference in update_cpu_qos_request() 2026-05-08 14:22 UTC CVE-2026-43400: drm/amdgpu: add upper bound check on user inputs in signal ioctl 2026-05-08 14:22 UTC CVE-2026-43399: drm/amdgpu/userq: Fix reference leak in amdgpu_userq_wait_ioctl 2026-05-08 14:22 UTC CVE-2026-43398: drm/amdgpu: add upper bound check on user inputs in wait ioctl 2026-05-08 14:22 UTC CVE-2026-43397: drm/bridge: samsung-dsim: Fix memory leak in error path 2026-05-08 14:22 UTC CVE-2026-43396: drm/xe/sync: Fix user fence leak on alloc failure 2026-05-08 14:22 UTC CVE-2026-43395: drm/xe/sync: Cleanup partially initialized sync on parse failure 2026-05-08 14:22 UTC CVE-2026-43394: nfsd: Fix cred ref leak in nfsd_nl_listener_set_doit() 2026-05-08 14:22 UTC CVE-2026-43393: btrfs: fix chunk map leak in btrfs_map_block() after btrfs_chunk_map_num_copies() 2026-05-08 14:22 UTC CVE-2026-43384: net/tcp-ao: Fix MAC comparison to be constant-time 2026-05-08 14:21 UTC CVE-2026-43360: btrfs: fix transaction abort on file creation due to name hash collision 2026-05-08 14:21 UTC CVE-2026-43359: btrfs: fix transaction abort on set received ioctl due to item overflow 2026-05-08 14:21 UTC CVE-2026-43358: btrfs: add missing RCU unlock in error path in try_release_subpage_extent_buffer() 2026-05-08 14:21 UTC CVE-2026-43357: iio: gyro: mpu3050-core: fix pm_runtime error handling 2026-05-08 14:21 UTC CVE-2026-43356: iio: imu: adis: Fix NULL pointer dereference in adis_init 2026-05-08 14:21 UTC CVE-2026-43355: iio: light: bh1780: fix PM runtime leak on error path 2026-05-08 14:21 UTC CVE-2026-43382: batman-adv: Avoid double-rtnl_lock ELP metric worker 2026-05-08 14:21 UTC CVE-2026-43381: nouveau/dpcd: return EBUSY for aux xfer if the device is asleep 2026-05-08 14:21 UTC CVE-2026-43354: iio: proximity: hx9023s: Protect against division by zero in set_samp_freq 2026-05-08 14:21 UTC CVE-2026-43380: hwmon: (pmbus/q54sj108a2) fix stack overflow in debugfs read 2026-05-08 14:21 UTC CVE-2026-43379: ksmbd: fix use-after-free in smb_lazy_parent_lease_break_close() 2026-05-08 14:21 UTC CVE-2026-43378: smb: server: fix use-after-free in smb2_open() 2026-05-08 14:21 UTC CVE-2026-43377: ksmbd: Don't log keys in SMB3 signing and encryption key generation 2026-05-08 14:21 UTC CVE-2026-43376: ksmbd: fix use-after-free by using call_rcu() for oplock_info 2026-05-08 14:21 UTC CVE-2026-43375: net: mctp: fix device leak on probe failure 2026-05-08 14:21 UTC CVE-2026-43374: net: nexthop: fix percpu use-after-free in remove_nh_grp_entry 2026-05-08 14:21 UTC CVE-2026-43373: net: ncsi: fix skb leak in error paths 2026-05-08 14:21 UTC CVE-2026-43372: net: dsa: microchip: Fix error path in PTP IRQ setup 2026-05-08 14:21 UTC CVE-2026-43371: net: macb: Shuffle the tx ring before enabling tx 2026-05-08 14:21 UTC CVE-2026-43353: i3c: mipi-i3c-hci: Fix race in DMA ring dequeue 2026-05-08 14:21 UTC CVE-2026-43370: drm/amdgpu: Fix use-after-free race in VM acquire 2026-05-08 14:21 UTC CVE-2026-43369: drm/amd: Fix NULL pointer dereference in device cleanup 2026-05-08 14:21 UTC CVE-2026-43368: drm/i915: Fix potential overflow of shmem scatterlist length 2026-05-08 14:21 UTC CVE-2026-43367: drm/amd: Fix a few more NULL pointer dereference in device cleanup 2026-05-08 14:21 UTC CVE-2026-43366: io_uring/kbuf: check if target buffer list is still legacy on recycle 2026-05-08 14:21 UTC CVE-2026-43365: xfs: fix undersized l_iclog_roundoff values 2026-05-08 14:21 UTC CVE-2026-43364: ublk: fix NULL pointer dereference in ublk_ctrl_set_size() 2026-05-08 14:21 UTC CVE-2026-43363: x86/apic: Disable x2apic on resume if the kernel expects so 2026-05-08 14:21 UTC CVE-2026-43362: smb: client: fix in-place encryption corruption in SMB2_write() 2026-05-08 14:21 UTC CVE-2026-43361: btrfs: fix transaction abort when snapshotting received subvolumes 2026-05-08 14:21 UTC CVE-2026-43351: KVM: arm64: Eagerly init vgic dist/redist on vgic creation 2026-05-08 14:21 UTC CVE-2026-43352: i3c: mipi-i3c-hci: Correct RING_CTRL_ABORT handling in DMA dequeue 2026-05-08 14:21 UTC CVE-2026-43350: smb: client: require a full NFS mode SID before reading mode bits 2026-05-08 13:41 UTC CVE-2026-43348: mshv_vtl: Fix vmemmap_shift exceeding MAX_FOLIO_ORDER 2026-05-08 13:41 UTC CVE-2026-43349: f2fs: fix to avoid uninit-value access in f2fs_sanity_check_node_footer 2026-05-08 13:41 UTC CVE-2026-43347: arm64: dts: qcom: monaco: Reserve full Gunyah metadata region 2026-05-08 13:39 UTC CVE-2026-43346: ice: ptp: don't WARN when controlling PF is unavailable 2026-05-08 13:39 UTC CVE-2026-43344: perf/x86/intel/uncore: Fix die ID init and look up bugs 2026-05-08 13:39 UTC CVE-2026-43345: net: ipa: fix event ring index not programmed for IPA v5.0+ 2026-05-08 13:39 UTC CVE-2026-43343: usb: gadget: f_subset: Fix unbalanced refcnt in geth_free 2026-05-08 13:37 UTC CVE-2026-43342: usb: gadget: f_rndis: Protect RNDIS options with mutex 2026-05-08 13:37 UTC CVE-2026-43340: comedi: Reinit dev->spinlock between attachments to low-level drivers 2026-05-08 13:37 UTC CVE-2026-43341: net/ipv6: ioam6: prevent schema length wraparound in trace fill 2026-05-08 13:37 UTC CVE-2026-43321: bpf: Properly mark live registers for indirect jumps 2026-05-08 13:26 UTC CVE-2026-43320: drm/amd/display: Fix dsc eDP issue 2026-05-08 13:26 UTC CVE-2026-43319: spi: spidev: fix lock inversion between spi_lock and buf_lock 2026-05-08 13:26 UTC CVE-2026-43318: drm/amdgpu: fix sync handling in amdgpu_dma_buf_move_notify 2026-05-08 13:26 UTC CVE-2026-43317: most: core: fix leak on early registration failure 2026-05-08 13:26 UTC CVE-2025-71302: drm/panthor: fix for dma-fence safe access rules 2026-05-08 13:26 UTC CVE-2026-43316: media: solo6x10: Check for out of bounds chip_id 2026-05-08 13:26 UTC CVE-2025-71300: Revert "arm64: zynqmp: Add an OP-TEE node to the device tree" 2026-05-08 13:15 UTC CVE-2025-71301: drm/tests: shmem: Hold reservation lock around vmap/vunmap 2026-05-08 13:15 UTC CVE-2026-43314: dm: remove fake timeout to avoid leak request 2026-05-08 13:12 UTC CVE-2026-43315: KVM: nSVM: Remove a user-triggerable WARN on nested_svm_load_cr3() succeeding 2026-05-08 13:12 UTC CVE-2026-43290: media: uvcvideo: Return queued buffers on start_streaming() failure 2026-05-08 13:11 UTC CVE-2026-43289: kexec: derive purgatory entry from symbol 2026-05-08 13:11 UTC CVE-2026-43288: ext4: move ext4_percpu_param_init() before ext4_mb_init() 2026-05-08 13:11 UTC CVE-2026-43287: drm: Account property blob allocations to memcg 2026-05-08 13:11 UTC CVE-2026-43286: mm/hugetlb: restore failed global reservations to subpool 2026-05-08 13:11 UTC CVE-2026-43285: mm/slab: do not access current->mems_allowed_seq if !allow_spin 2026-05-08 13:11 UTC CVE-2026-43313: ACPI: processor: Fix NULL-pointer dereference in acpi_processor_errata_piix4() 2026-05-08 13:12 UTC CVE-2026-43312: media: i2c: ov5647: Initialize subdev before controls 2026-05-08 13:12 UTC CVE-2026-43311: soc/tegra: pmc: Fix unsafe generic_handle_irq() call 2026-05-08 13:12 UTC CVE-2025-71299: spi: cadence-quadspi: Parse DT for flashes with the rest of the DT parsing 2026-05-08 13:11 UTC CVE-2026-43310: media: verisilicon: Avoid G2 bus error while decoding H.264 and HEVC 2026-05-08 13:12 UTC CVE-2026-43309: md raid: fix hang when stopping arrays with metadata through dm-raid 2026-05-08 13:12 UTC CVE-2026-43308: btrfs: don't BUG() on unexpected delayed ref type in run_one_delayed_ref() 2026-05-08 13:12 UTC CVE-2026-43307: iio: accel: adxl380: Avoid reading more entries than present in FIFO 2026-05-08 13:12 UTC CVE-2026-43306: bpf: crypto: Use the correct destructor kfunc type 2026-05-08 13:12 UTC CVE-2026-43305: drm/amd/display: Fix mismatched unlock for DMUB HW lock in HWSS fast path 2026-05-08 13:12 UTC CVE-2026-43304: libceph: define and enforce CEPH_MAX_KEY_LEN 2026-05-08 13:12 UTC CVE-2026-43303: mm/page_alloc: clear page->private in free_pages_prepare() 2026-05-08 13:12 UTC CVE-2026-43302: drm/v3d: Set DMA segment size to avoid debug warnings 2026-05-08 13:12 UTC CVE-2026-43301: media: chips-media: wave5: Fix PM runtime usage count underflow 2026-05-08 13:12 UTC CVE-2025-71298: drm/tests: shmem: Hold reservation lock around madvise 2026-05-08 13:11 UTC CVE-2026-43300: drm/panel: Fix a possible null-pointer dereference in jdi_panel_dsi_remove() 2026-05-08 13:12 UTC CVE-2026-43299: btrfs: do not ASSERT() when the fs flips RO inside btrfs_repair_io_failure() 2026-05-08 13:12 UTC CVE-2026-43298: drm/amdgpu: Skip vcn poison irq release on VF 2026-05-08 13:12 UTC CVE-2026-43297: media: rockchip: rga: Fix possible ERR_PTR dereference in rga_buf_init() 2026-05-08 13:12 UTC CVE-2026-43296: octeontx2-af: Workaround SQM/PSE stalls by disabling sticky 2026-05-08 13:12 UTC CVE-2026-43295: rapidio: replace rio_free_net() with kfree() in rio_scan_alloc_net() 2026-05-08 13:12 UTC CVE-2026-43294: drm: renesas: rz-du: mipi_dsi: fix kernel panic when rebooting for some panels 2026-05-08 13:11 UTC CVE-2026-43293: media: chips-media: wave5: Fix kthread worker destruction in polling mode 2026-05-08 13:11 UTC CVE-2026-43292: mm/vmalloc: prevent RCU stalls in kasan_release_vmalloc_node 2026-05-08 13:11 UTC CVE-2026-43291: net: nfc: nci: Fix parameter validation for packet data 2026-05-08 13:11 UTC CVE-2025-71296: drm/tests: shmem: Hold reservation lock around purge 2026-05-08 13:11 UTC CVE-2025-71297: wifi: rtw88: 8822b: Avoid WARNING in rtw8822b_config_trx_mode() 2026-05-08 13:11 UTC CVE-2026-43284: xfrm: esp: avoid in-place decrypt on shared skb frags 2026-05-08 7:21 UTC CVE-2025-71285: net: qrtr: Drop the MHI auto_queue feature for IPCR DL channels 2026-05-06 11:32 UTC CVE-2025-71294: drm/amdgpu: fix NULL pointer issue buffer funcs 2026-05-06 11:32 UTC CVE-2025-71293: drm/amdgpu/ras: Move ras data alloc before bad page check 2026-05-06 11:32 UTC CVE-2025-71292: jfs: nlink overflow in jfs_rename 2026-05-06 11:32 UTC

    Post summary

    The text lists numerous Linux kernel CVE patches, indicating disclosure of newly fixed vulnerabilities, but contains no PoC, exploit code, or active exploitation evidence.

    3156704111.1K
    42.2K followersView on X
  • Wiz@wiz_io
    Disclosure

    🚨 Meet "Dirty Frag": a new Linux kernel privilege escalation, fresh off the heels of Copy Fail. Wiz Research is tracking CVE-2026-43284 and CVE-2026-43500 (also known as Copy Fail 2), discovered by Hyunwoo Kim (@v4bel). No official patches are out yet, and a public PoC already exists. 🔑 The technical bit: A vulnerability chain in the ESP (IPsec) and RxRPC kernel subsystems, with two deterministic page-cache write primitives in the same spirit as Dirty Pipe. Ubuntu, RHEL 8/9/10, AlmaLinux, Fedora, openSUSE, and more are all affected. 🛡️ Slightly less risky for containers: Exploitation usually requires CAP_NET_ADMIN, so hardened Kubernetes setups with default seccomp profiles are at lower risk. VMs and less restricted environments should still take this seriously. 🔧 What to do now: Until patches drop, you can temporarily disable the vulnerable kernel modules (esp4, esp6, rxrpc). Full mitigation and detection guidance in the blog. Wiz customers: pre-built queries and a live advisory are already in the Threat Intel Center. We'll keep updating both as more info comes to light. Full research from Merav Bar and @ramimacisabird: https://www.wiz.io/blog/dirty-frag-linux-kernel-local-privilege-escalation-via-esp-and-rxrpc

    Post summary

    Wiz Research announces the discovery of CVE‑2026‑43284 and CVE‑2026‑43500 (Copy Fail 2), detailing the kernel privilege‑escalation vector, affected distributions, and providing mitigation steps while noting the existence of a public PoC but not active exploitation.

    217065346.6K
    24.8K followersView on X
  • Adrien Linuxtricks @_adriend_
    General

    Excellent article en français sur la faille Dirty Frag aka la double CVE-2026-43284 et CVE-2026-43500 ! Je vous recommande grandement sa lecture ! https://blog.marcfredericgomez.fr/dirty-frag-cve-2026-43284-et-cve-2026-43500/ #Linux #LPE #DirtyFrag

    Post summary

    The post simply recommends reading an article about the Dirty Frag CVEs, with no additional technical or exploit information.

    120052293.4K
    6.3K followersView on X
  • DMNTR Network Solutions 👻 AS204773@weareDMNTRs
    Disclosure

    Actualización, tenemos CVE: CVE-2026-43284. https://nvd.nist.gov/vuln/detail/CVE-2026-43284

    Post summary

    The message announces that a new CVE (CVE-2026-43284) has been identified.

    1111632010.2K
    25.8K followersView on X
  • Manabu Ori@orimanabu
    General

    (すみません手違いでDirty Fragのツイートを消してしまいまして...改めて) Dirty Frag (CVE-2026-43284) に関するRed Hat製品の情報はこちらをご参照ください CVE: https://access.redhat.com/security/cve/cve-2026-43284 Security Bulletin: https://access.redhat.com/security/vulnerabilities/RHSB-2026-003

    Post summary

    The tweet simply points to Red Hat’s security bulletin for CVE‑2026‑43284 without offering any PoC, exploit, patch details, or technical specifics.

    41823263.6K
    1.3K followersView on X
  • Dark Web Intelligence@DailyDarkWeb
    General

    ⚠️ A threat actor is advertising an alleged Linux privilege escalation exploit dubbed “Dirty Frag,” claiming it targets: • CVE-2026-43284 • CVE-2026-43500 According to the forum post, the claimed exploit allegedly abuses: • Linux kernel memory fragmentation handling • Network stack processing mechanisms • Page cache manipulation • IPsec (ESP4/ESP6) components • RxRPC-related functionality The actor claims the technique enables: • Stable local privilege escalation to root • Container escape scenarios • Post-exploitation privilege escalation • Deterministic exploitation without race-condition dependency The post further claims potential effectiveness against: • RHEL • Ubuntu • CentOS • Fedora • AlmaLinux • OpenShift environments At this time: • The claims remain unverified • Public technical validation is currently unavailable • There is no confirmation regarding real-world exploitation activity • The reliability and impact of the alleged exploit are unknown Kernel-level privilege escalation vulnerabilities are particularly dangerous because they can: • Bypass container isolation • Enable persistence • Facilitate lateral movement • Disable security tooling • Escalate low-privileged access into full system compromise Organizations should consider: • Monitoring for emerging advisories and proof-of-concept releases • Reviewing kernel patch status • Restricting unnecessary kernel modules and services • Monitoring for suspicious privilege escalation activity • Applying least-privilege controls and hardening container environments Daily Dark Web is monitoring underground forums and related channels for additional technical details, proof-of-concept material, or exploitation evidence tied to the alleged vulnerabilities. #DDW #Intelligence #CyberSecurity #Linux #Kernel #PrivilegeEscalation #Exploit #CVE #ThreatIntelligence #VulnerabilityResearch

    Post summary

    A threat actor is advertising an unverified Linux privilege‑escalation exploit for CVE-2026-43284 and CVE-2026-43500, providing high‑level technical speculation but no proof‑of‑concept or real‑world evidence.

    1714356.1K
    195.7K followersView on X
  • Gray Hats@the_yellow_fall
    Active Exploitation

    The Dirty Frag Linux vulnerability (CVE-2026-43284 & CVE-2026-43500) is being actively exploited in the wild. Learn how to secure your servers from this root LPE exploit. #DirtyFrag #LinuxSecurity #CyberSecurity #ZeroDay #Vulnerability #ExploitInTheWild https://securityonline.info/dirty-frag-linux-vulnerability-exploited-in-the-wild-root-access/ https://t.co/U6K6y1hFiy

    Post summary

    The tweet asserts that CVE-2026-43284 and CVE-2026-43500 (Dirty Frag Linux vulnerabilities) are being actively exploited in the wild for a root LPE, but it gives no patch information or PoC details.

    2703362.4K
    12.5K followersView on X
  • Lain on the Blockchain@CryptoCyberia
    General

    Lots of zero-day exploits lately. Of course, today's Dirty Frag exploit (CVE-2026-43284) requires the attacker to have local access to gain root privileges. Note that remote, authenticated access is sufficient. It seems pieced of the exploit were published in different cybersecurity discussions, though the entire exploit required piecing together 3 different articles to make the entire exploit.

    Post summary

    The post references CVE-2026-43284, noting its privilege escalation requirements, but offers no evidence of a PoC, exploit code, patch, or reported active exploitation.

    7103111.2K
    19.3K followersView on X
  • hito@_hito_
    General

    Linuxのカーネルまわりの脆弱性(最近のやつ)の整理(as of 5月18日) ・Copy Fail / CVE-2026-31431 ・Dirty Frag (Copy Fail 2) / CVE-2026-43284, CVE-2026-43500 ・Fragnesia / CVE-2026-46300 ・DirtyDecrypt (Fragnesia亜種) LPE連打が厄介。

    Post summary

    The post lists several recent Linux kernel vulnerabilities (e.g., CVE-2026-31431, CVE-2026-43284) and notes they enable repeated local privilege escalation, but provides no further details on patches, exploits, or technical specifics.

    01211872.8K
    2.2K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSlinuxlinux_kernel---

Explore more