logo

Dirty Frag is a new Linux bug putting your system at risk - and there's no easy fix yet

ID: 2e2c51ee-eea5-5146-b29d-716caea1c224

STIX ID: report--2e2c51ee-eea5-5146-b29d-716caea1c224

Feed Name: ZDNet Security

Threat Score
90/100

Date Published: 2026-05-11

Date Updated: 2026-05-11

...
...

ZDNET describes the "Dirty Frag" Linux kernel vulnerability chain that targets xfrm-ESP (CVE-2026-43284) and RxRPC (CVE-2026-43500) to create page-cache write primitives enabling unprivileged accounts to escalate to root. Public proof-of-concept code was widely mirrored after an embargo break, Microsoft reported observed exploitation, and vendors recommend temporary mitigations (blacklisting esp4/esp6/rxrpc) and timely kernel updates and reboots.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.