logo

Embargo Broken: Public PoC Released for “Dirty Frag” Linux Kernel Exploit Granting Instant Root Access

ID: bdecfdc6-e2b2-59d6-82a5-5290389001c0

STIX ID: report--bdecfdc6-e2b2-59d6-82a5-5290389001c0

Feed Name: securityonline.info

Threat Score
85/100

Date Published: 2026-05-08

Date Updated: 2026-05-08

Author: Ddos

...
...

Dirty Frag is a newly disclosed Linux kernel vulnerability that enables unprivileged users to achieve immediate root by exploiting a zero-copy send path where in-place cryptographic operations can modify page-cache pages the attacker should only read; a public proof-of-concept and full technical walkthrough have been released, the exploit chains xfrm-ESP and RxRPC page-cache write primitives to work across major distributions (including Ubuntu), and it reportedly bypasses prior mitigations such as algif_aead blacklisting.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.