logo

Fragnesia Universal Linux Root LPE Details and One-Line PoC Disclosed

ID: e63778c4-cad4-504a-87f8-9035813c906d

STIX ID: report--e63778c4-cad4-504a-87f8-9035813c906d

Feed Name: securityonline.info

Threat Score
85/100

Date Published: 2026-05-13

Date Updated: 2026-05-13

Author: Ddos

...
...

Fragnesia is a disclosed Linux kernel local privilege escalation (LPE) that abuses a logic flaw in the networking subsystem to modify VFS page-cache contents—allowing an unprivileged user to obtain a persistent root shell in memory without altering on-disk binaries. The researchers published full technical details and a simple PoC (one-line build/run command), affected all kernels released before May 13, 2026, and recommend immediate patching or unloading of esp4/esp6/rxrpc modules as temporary mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.