Fragnesia Universal Linux Root LPE Details and One-Line PoC Disclosed
ID: e63778c4-cad4-504a-87f8-9035813c906d
STIX ID: report--e63778c4-cad4-504a-87f8-9035813c906d
Feed Name: securityonline.info
Fragnesia is a disclosed Linux kernel local privilege escalation (LPE) that abuses a logic flaw in the networking subsystem to modify VFS page-cache contents—allowing an unprivileged user to obtain a persistent root shell in memory without altering on-disk binaries. The researchers published full technical details and a simple PoC (one-line build/run command), affected all kernels released before May 13, 2026, and recommend immediate patching or unloading of esp4/esp6/rxrpc modules as temporary mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
