CVE-2026-74469

LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

0.0/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Peaked 1d ago at 4 mentions (2026-09-18); latest day: 1
  • 5 total mentions across 2 days

Deep dive

Activity timeline5 mentions / 2d
01234Mentions · 2026-09-18: 4Mentions · 2026-09-19: 109-1809-19
Referenced assets8 URLs
Full discourse5 posts
  • elhacker.NET@elhackernet

    Cuatro fallos en el núcleo de Linux permiten acceso root Se han revelado cuatro nuevas vulnerabilidades en el núcleo de Linux ( CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 y CVE-2026-74469 ) https://blog.elhacker.net/2026/09/cuatro-fallos-en-el-nucleo-de-linux.html

    024187113.3K
    141.9K followersView on X
  • OS開発者@hacker_infra

    いきなり4つのLPEのPoCが公開されている Red hatにメールで報告済み 緩和策 CVE-2026-80844 (DirtyAH6): The vulnerability requires the IPv6 AH6/XFRM path. On systems where IPv6 is not required, IPv6 can be disabled at boot: grubby --update-kernel=ALL --args="ipv6.disable=1" A reboot is required. CVE-2026-81000 (TUNderflow): On systems that do not require TUN/TAP, the tun kernel module can be disabled: echo "install tun /bin/true" > /etc/modprobe.d/disable-tun.conf CVE-2026-68121 (PPPoEject): On systems that do not require PPPoE, the pppoe kernel module can be disabled: echo "install pppoe /bin/true" > /etc/modprobe.d/disable-pppoe.conf CVE-2026-74469 (DiagSpill): On systems that do not require SCTP, the sctp kernel module can be disabled: echo "install sctp /bin/true" > /etc/modprobe.d/disable-sctp.conf https://seclists.org/oss-sec/2026/q3/822

    03080359
    2.9K followersView on X
  • Rıdvan Yağlı@ridvanyagli

    🚨 Linux kernel'de 4 kritik LPE açığı için public exploit yayınlandı! CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 ve CVE-2026-74469 için çalışan PoC / Exploit github üzerinden yayınlandı. Açıklar; IPsec AH6, TUN/TAP, PPPoE ve SCTP bileşenlerindeki bellek güvenliği hatalarından kaynaklanıyor ve yerel kullanıcıların root yetkisine yükselmesine olanak sağlıyor. 🔴 CVE-2026-74469: 8.8 CVSS 🔴 CVE-2026-81000: 7.8 CVSS 🔴 CVE-2026-68121: 7.8 CVSS ⚠️ CVE-2026-80844: CVSS analizi bekliyor İlk 3 açıkta unprivileged user namespace gerekiyor. CVE-2026-74469 ise bu gereksinime sahip değil. 👉 PoC / Exploit'ler şöyle: DirtyAH6 — CVE-2026-80844: https://github.com/manizada/DirtyAH6 TUNderflow — CVE-2026-81000: https://github.com/manizada/TUNderflow PPPoEject — CVE-2026-68121: https://github.com/manizada/PPPoEject DiagSpill — CVE-2026-74469: https://github.com/manizada/DiagSpill Şu ana kadar aktif saldırılarda kullanıldığına dair doğrulanmış bir bulgu bulunmuyor. Public exploit yayınlandığı için güncel kernel/security update'lerinin uygulanması mutlaka gerekli.

    02051447
    2.3K followersView on X
  • Venkata Satish Guttula 🛰️@snakeyesV1

    News: Asim Manizada published local-root PoCs for four Linux kernel bugs (CVE-2026-80844, CVE-2026-81000, CVE-2026-68121, CVE-2026-74469). Hits unpatched multi-user hosts. Patch to a fixed kernel (6.12.109+ or your distro advisory). https://www.infosectoday.io/public-exploits-released-for-four-linux-kernel-flaws-that-enable-local-root/

    0000044
    3.0K followersView on X
  • Venkata Satish Guttula 🛰️@snakeyesV1

    News: Four Linux kernel bugs give local root: DirtyAH6 (CVE-2026-80844), TUNderflow (CVE-2026-81000), PPPoEject (CVE-2026-68121), DiagSpill (CVE-2026-74469). Hits many kernels. Update to 5.10.270, 5.15.221, 6.1.188, 6.6.157, 6.12.109, 6.18.50, or 7.2.4. https://www.openwall.com/lists/oss-security/2026/09/18/3

    0000055
    3.0K followersView on X

Explore more