#local-privilege-escalation

[ follow ]
#linux-kernel
fromInfoQ
23 hours ago
Information security

Copy Fail and Dirty Frag: Linux Page-Cache Exploits Target Every Major Distribution

fromtheregister
4 days ago
Information security

'Dirty Frag' Linux flaw one-ups CopyFail with no patches and public root exploit

Information security
fromInfoQ
23 hours ago

Copy Fail and Dirty Frag: Linux Page-Cache Exploits Target Every Major Distribution

Two Linux kernel local privilege escalation flaws enable unprivileged users to obtain root by manipulating page cache via AF_ALG and related logic bugs.
Information security
fromSecurityWeek
1 day ago

New 'Dirty Frag' Linux Vulnerability Possibly Exploited in Attacks

Dirty Frag and Copy Fail 2 chain two Linux kernel flaws to enable reliable local privilege escalation to root, with possible in-the-wild exploitation.
Information security
fromtheregister
4 days ago

'Dirty Frag' Linux flaw one-ups CopyFail with no patches and public root exploit

Dirty Frag is a universal Linux local privilege escalation flaw chaining two kernel bugs, enabling unprivileged users to gain immediate root on major distributions without patches or CVE.
Information security
fromThe Hacker News
4 days ago

Linux Kernel Dirty Frag LPE Exploit Enables Root Access Across Major Distributions

Dirty Frag is an unpatched Linux kernel local privilege escalation that chains page-cache write bugs to achieve root on most distributions.
Information security
fromZDNET
1 day ago

Dirty Frag is a new Linux bug putting your system at risk - and there's no easy fix yet

Dirty Frag enables local privilege escalation from an unprivileged account to root by corrupting kernel page cache via networking and authentication logic bugs.
Information security
fromArs Technica
1 week ago

The most severe Linux threat to surface in years catches the world flatfooted

A critical Linux vulnerability allows unprivileged users to gain root access, posing severe risks to data centers and personal devices.
Information security
fromThe Hacker News
7 months ago

Urgent: China-Linked Hackers Exploit New VMware Zero-Day Since October 2024

CVE-2025-41244 enables local privilege escalation in VMware Tools and Aria Operations and has been exploited in the wild by UNC5174; patches and mitigations released.
Information security
fromSecurityWeek
7 months ago

Organizations Warned of Exploited Sudo Vulnerability

A critical Sudo local privilege escalation (CVE-2025-32463) allows any user to gain root privileges and has been exploited, requiring urgent patching.
fromTheregister
8 months ago

Android drops 120 flaw fixes, two exploited in the wild

Patch Tuesday is next week, but Android is ahead of the game, dropping its biggest patch bundle this year while attackers actively exploit two of the now-fixed flaws. This month, the world's most popular mobile operating system pushed out 120 patches, its biggest monthly dump this year. It's a far cry from July, when Android didn't issue a single patch as everything was apparently fine, but in September, two of the flaws may be under "limited, targeted exploitation."
Information security
[ Load more ]