securityonline.info 7/28/2026, 3:50:39 PM · external

Linux kernel UDPv6 flaw CVE-2026-53362 lets local users gain root

Linux kernel UDPv6 flaw CVE-2026-53362 lets local users gain root
CyberSIXT Evidence Panel
Primary Source blog.qwerty.or.kr
CVE Intel
CISA KEV Not in KEV
Patch Patch Available

THE content discusses the Linux kernel vulnerability CVE-2026-53362, also known as Fraggap, which allows local privilege escalation due to an out-of-bounds write in the UDPv6 code path. The CVSS score is 7.8, indicating high severity. The vulnerability can be exploited by local attackers to gain root access on systems with IPv6 support enabled. Technical details and proof-of-concept code have been published, increasing the risk for unpatched systems. Users are advised to update to fixed kernel versions immediately to mitigate the risk.

View Primary Source Via securityonline.info

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline