arstechnica.com 6/9/2026, 3:26:28 PM · external

Linux Kernel Bug Lets Unprivileged Users Escalate to Root

Linux Kernel Bug Lets Unprivileged Users Escalate to Root
Developing story vulnerability 3 articles tracked
Linux kernel nf_tables use‑after‑free flaw (CVE-2026-23111) allows local root escalation
CyberSIXT Evidence Panel
Primary Source nvd.nist.gov
CVE Intel
CISA KEV Not in KEV
Patch Patch Available

RESEARCHERS have uncovered a critical vulnerability in the Linux kernel tracked as CVE-2026-23111, which allows unprivileged users to escalate their permissions to root. The issue arises from a single misplaced character in the nf_tables subsystem, which manages firewall rules and packet filtering. This bug, a use-after-free vulnerability, allows attackers to manipulate memory and hijack control flow, despite stability tests showing 99% reliability on idle systems.

Although this exploit was fixed in February, it represents a significant security risk, especially when combined with other vulnerabilities affecting Linux.

View Primary Source Via arstechnica.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline