www.securityweek.com 29 Jun 2026, 11:20 UTC

Linux Kernel Flaw 'DirtyClone' Lets Local Users Gain Root Access

Linux Kernel Flaw 'DirtyClone' Lets Local Users Gain Root Access
CyberSIXT Evidence Panel
Primary Source research.jfrog.com
CVE Intel
CISA KEV Not in KEV
Patch Patch Available

JFROG has detailed a high-severity Linux kernel vulnerability, CVE-2026-43503, immediately allowing local users to gain root access. Named 'DirtyClone,' this local privilege escalation exploit is a variant of existing vulnerabilities like DirtyFrag and Fragnesia. The flaws are due to improper memory management in the kernel’s networking stack related to socket buffer processing. A patch issued on May 24 addresses this, but systems not fully updated remain vulnerable. Affected distributions include Debian, Fedora, and Ubuntu, posing significant risks to multi-tenant clouds and Kubernetes environments.

View Primary Source Via www.securityweek.com

Article by CyberSIXT