www.securityweek.com 6/29/2026, 11:40:58 AM · external

Linux Kernel Flaw 'DirtyClone' Lets Local Users Gain Root Access

Linux Kernel Flaw 'DirtyClone' Lets Local Users Gain Root Access
Developing story vulnerability 4 articles tracked
DirtyClone Linux kernel privilege escalation (CVE-2026-43503)
CyberSIXT Evidence Panel
Primary Source research.jfrog.com
CVE Intel
CISA KEV Not in KEV
Patch Patch Available

JFROG has detailed a high-severity Linux kernel vulnerability, CVE-2026-43503, immediately allowing local users to gain root access. Named 'DirtyClone,' this local privilege escalation exploit is a variant of existing vulnerabilities like DirtyFrag and Fragnesia. The flaws are due to improper memory management in the kernel’s networking stack related to socket buffer processing. A patch issued on May 24 addresses this, but systems not fully updated remain vulnerable. Affected distributions include Debian, Fedora, and Ubuntu, posing significant risks to multi-tenant clouds and Kubernetes environments.

View Primary Source Via www.securityweek.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline