
Update on CVE-2026-43723. Technically an arbitrary root file write primitive, however, MediaRemotes cleanup path deletes the file ca. 50ms after the write, so it effectively becomes an arbitrary root file deletion primitive. PoC: https://gist.github.com/rooootdev/786df35f46475763c4b8bcbece40aeb1a
Post summary
The post announces CVE‑2026‑43723, provides a PoC for an arbitrary root file write/deletion primitive, and supplies technical details but no patch or active exploitation evidence.


