Linux Kernel Dirty Frag LPE Exploit Enables Root Access Across Major Distributions
ID: b6e12e54-de98-51f8-895c-a3a4b59afd27
STIX ID: report--b6e12e54-de98-51f8-895c-a3a4b59afd27
Feed Name: The Hacker News
**Dirty Frag** is a newly reported, unpatched Linux kernel local privilege escalation that chains xfrm-ESP and RxRPC page-cache write flaws to obtain root on most distributions (Ubuntu, RHEL, Fedora, AlmaLinux, CentOS Stream, openSUSE, etc.). The researcher reports the bug is deterministic with a high success rate, a working proof-of-concept has been published after an embargo was broken, and interim mitigation is to blacklist and unload esp4, esp6, and rxrpc kernel modules until patches are available.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
