Warning: Dirty Frag, a new Linux Local Privilege Escalation vulnerability, was disclosed. Patch Immediately!
ID: f57946ce-e64f-538d-b552-8e7389c75294
STIX ID: report--f57946ce-e64f-538d-b552-8e7389c75294
Feed Name: CCB Advisories Feed
The advisory describes "Dirty Frag", a recently disclosed Linux kernel local privilege escalation (LPE) that chains two networking subsystem flaws to overwrite page-cache contents and achieve deterministic root escalation on many major distributions; two CVEs (CVE-2026-43284 and CVE-2026-43500) are cited (CVSS 7.8). Distributors have generally backported fixes and the Centre for Cybersecurity Belgium recommends prioritizing patching, applying distribution mitigations if patching is not immediately possible, and increasing monitoring, while noting no confirmed in-the-wild exploitation so far.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
