logo

Dangerous New Linux Exploit Gives Attackers Root Access to Countless Computers

ID: 57995c01-a39b-5344-9b8f-81001c7b6820

STIX ID: report--57995c01-a39b-5344-9b8f-81001c7b6820

Feed Name: WIRED Security

Threat Score
90/100

Date Published: 2026-05-01

Date Updated: 2026-05-01

Author: Dan Goodin, Ars Technica

...
...

A critical Linux kernel local privilege escalation (CVE-2026-31431, “CopyFail”) and a publicly released exploit script enable reliable root escalation across many kernel releases by exploiting a crypto API logic error that writes four bytes past a destination buffer. Although patches were issued for multiple kernel lines, many distributions had not yet incorporated fixes at disclosure time, leaving shared infrastructure — containers, multi-tenant hosts, CI/CD jobs, and personal devices — at significant risk of full compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.