logo

Dirty Frag: Unpatched Linux vulnerability delivers root access

ID: 776f9a32-1647-5bb4-b91c-193ffa92bdb8

STIX ID: report--776f9a32-1647-5bb4-b91c-193ffa92bdb8

Feed Name: Help Net Security

Threat Score
80/100

Date Published: 2026-05-08

Date Updated: 2026-05-08

Author: Zeljka Zorz

...
...

Dirty Frag refers to two Linux kernel page-cache write vulnerabilities—an xfrm-ESP flaw (CVE-2026-43284, patched) and an RxRPC flaw (CVE-2026-43500, unpatched)—whose public PoCs and a disclosure leak raise the risk of local privilege escalation. Chaining the two flaws produces a reliable root escalation on most distributions; vendors are issuing kernel fixes while administrators are advised to mitigate by blacklisting or unloading affected modules until patched kernels are applied.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.