logo

Warning: Dirty Frag, a new Linux Local Privilege Escalation vulnerability, was disclosed. Patch Immediately!

ID: f57946ce-e64f-538d-b552-8e7389c75294

STIX ID: report--f57946ce-e64f-538d-b552-8e7389c75294

Feed Name: CCB Advisories Feed

Threat Score
70/100

Date Published: 2026-05-08

Date Updated: 2026-07-24

...
...

The advisory describes "Dirty Frag", a recently disclosed Linux kernel local privilege escalation (LPE) that chains two networking subsystem flaws to overwrite page-cache contents and achieve deterministic root escalation on many major distributions; two CVEs (CVE-2026-43284 and CVE-2026-43500) are cited (CVSS 7.8). Distributors have generally backported fixes and the Centre for Cybersecurity Belgium recommends prioritizing patching, applying distribution mitigations if patching is not immediately possible, and increasing monitoring, while noting no confirmed in-the-wild exploitation so far.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.