logo

Linux bitten by second severe vulnerability in as many weeks

ID: f7a95552-8303-50ea-9ed8-6e67a73f8cd2

STIX ID: report--f7a95552-8303-50ea-9ed8-6e67a73f8cd2

Feed Name: Security - Ars Technica

Threat Score
80/100

Date Published: 2026-05-11

Date Updated: 2026-05-22

Author: Dan Goodin

...
...

Dirty Frag is a set of Linux kernel privilege-escalation bugs (CVE-2026-43284 and CVE-2026-43500) that misuse page-cache and sk_buff frag handling to enable attackers to corrupt read-only pages in memory and escalate to root; the issues affect IPsec ESP and RxRPC code paths, can be chained for reliable local root on major distributions, and should be mitigated immediately by applying vendor patches and recommended hardening.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.