logo

Fragnesia (CVE-2026-46300): Frequently asked questions about new Linux Kernel XFRM ESP-in-TCP privilege escalation

ID: 7519da11-dd40-5c23-815e-b602da92744f

STIX ID: report--7519da11-dd40-5c23-815e-b602da92744f

Feed Name: Tenable Blog

Threat Score
70/100

Date Published: 2026-05-14

Date Updated: 2026-05-14

Author: Satnam Narang

...
...

Tenable's RSO published an FAQ on Fragnesia (CVE-2026-46300), a high-severity Linux kernel local privilege escalation in the XFRM ESP-in-TCP subsystem that permits local users to gain root via page-cache modification; a public PoC and a patch (May 13) exist, the exploit was confirmed on Ubuntu but not observed in the wild, and mitigations include a kernel update or blacklisting affected modules.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.