Linux kernel DirtyClone privilege escalation (CVE-2026-43503)
Vulnerability
Summary
Hide ▲
Show ▼
CVE-2026-43503 in the Linux kernel gives a local user a path to root on affected systems, including multi-tenant servers, CI runners, container hosts, and Kubernetes clusters. JFrog Security Research published a working exploit walkthrough on June 25, showing how DirtyClone turns a kernel memory-corruption bug into full privilege escalation. The fix landed in mainline on May 21, so exposed deployments need to update now or apply temporary namespace and module restrictions.
Related Happenings
Linux kernel rxgk local DirtyDecrypt/DirtyCBC privilege-escalation flaw (CVE-2026-31635)
Vulnerability
H score41
First: 18.05.2026 10:18
Last: 18.05.2026 10:18
Sources 1
About this happening:
A **proof-of-concept exploit** has been released for **DirtyDecrypt/DirtyCBC** (**CVE-2026-31635**), a **recently patched Linux kernel** flaw in **rxgk_decrypt_skb()** that can en...
Linux kernel rxgk local DirtyDecrypt/DirtyCBC privilege-escalation flaw (CVE-2026-31635)
VulnerabilityAbout this happening: A **proof-of-concept exploit** has been released for **DirtyDecrypt/DirtyCBC** (**CVE-2026-31635**), a **recently patched Linux kernel** flaw in **rxgk_decrypt_skb()** that can en...
Linux kernel XFRM ESP-in-TCP local privilege escalation (CVE-2026-46300)
Vulnerability
H score35
First: 14.05.2026 10:06
Last: 14.05.2026 10:06
Sources 1
About this happening:
**Fragnesia** adds a fresh **Linux kernel** local privilege-escalation path, putting **unprivileged local attackers** on a route to **root access** across major distributions. The...
Linux kernel XFRM ESP-in-TCP local privilege escalation (CVE-2026-46300)
VulnerabilityAbout this happening: **Fragnesia** adds a fresh **Linux kernel** local privilege-escalation path, putting **unprivileged local attackers** on a route to **root access** across major distributions. The...
Latest development: 14.05.2026 16:00
Cloud security firm Wiz identified Fragnesia (CVE-2026-46300) in the Dirty Frag family, a Linux local privilege escalation that lets unprivileged local users gain root by corrupting the kernel page cache of read-only files. William Bowling of Zellic and the V12 team were credited with the discovery, and a working proof-of-concept exploit was published on May 13, 2026.
Linux kernel Dirty Frag and Copy Fail 2 privilege escalation (multiple vulnerabilities)
Vulnerability
H score31
First: 11.05.2026 11:15
Last: 11.05.2026 11:15
Sources 1
About this happening:
A newly disclosed **Linux kernel** local privilege-escalation flaw, **Dirty Frag and Copy Fail 2**, can let an unprivileged user reach **root** on affected systems. The bug chains...
Linux kernel Dirty Frag and Copy Fail 2 privilege escalation (multiple vulnerabilities)
VulnerabilityAbout this happening: A newly disclosed **Linux kernel** local privilege-escalation flaw, **Dirty Frag and Copy Fail 2**, can let an unprivileged user reach **root** on affected systems. The bug chains...
Linux kernel Dirty Frag local root escalation privilege-escalation flaw
Vulnerability
H score30
First: 08.05.2026 10:45
Last: 08.05.2026 10:45
Sources 1
About this happening:
**Dirty Frag** is a newly disclosed **Linux kernel** zero-day that can give **local attackers root privileges** on **most major Linux distributions**. The flaw is anchored in the...
Linux kernel Dirty Frag local root escalation privilege-escalation flaw
VulnerabilityAbout this happening: **Dirty Frag** is a newly disclosed **Linux kernel** zero-day that can give **local attackers root privileges** on **most major Linux distributions**. The flaw is anchored in the...
Linux kernel Dirty Frag blocklist mitigation
Advisory/Mitigation
H score41
First: 08.05.2026 08:12
Last: 08.05.2026 08:12
Sources 1
About this happening:
**CloudLinx** and Linux distribution advisories now recommend blocklisting **esp4**, **esp6**, and **rxrpc** to reduce exposure to the **Dirty Frag** Linux kernel **LPE** while pa...
Linux kernel Dirty Frag blocklist mitigation
Advisory/MitigationAbout this happening: **CloudLinx** and Linux distribution advisories now recommend blocklisting **esp4**, **esp6**, and **rxrpc** to reduce exposure to the **Dirty Frag** Linux kernel **LPE** while pa...
Timeline
-
26.06.2026 14:51 1 articles · 1h ago
Broader DirtyFrag patch is submitted for remaining fragment-transfer helpers
Mitigation Patch UpdateHyunwoo Kim submits a broader multi-site patch for DirtyFrag that covers several remaining frag-transfer helpers and aims to preserve the shared-frag bit across skb fragment transfer paths.
Show sources
- New DirtyClone Linux Kernel Flaw Lets Local Users Gain Root via Cloned Packets — thehackernews.com — 26.06.2026 14:51
-
26.06.2026 14:51 1 articles · 1h ago
DirtyClone fix lands in the Linux kernel mainline
Mitigation Patch UpdateThe Linux kernel merges the combined DirtyClone fix in mainline as commit 48f6a5356a33, closing the flag-preservation bug in __pskb_copy_fclone() and related frag-transfer helpers.
Show sources
- New DirtyClone Linux Kernel Flaw Lets Local Users Gain Root via Cloned Packets — thehackernews.com — 26.06.2026 14:51
-
25.06.2026 03:00 2 articles · 1d ago
Working DirtyClone exploit walkthrough becomes public
Initial DisclosureA working exploit walkthrough for DirtyClone shows how a local user can corrupt file-backed memory through a cloned network packet, reach root, and exercise the flaw on Debian, Ubuntu, and Fedora systems with default namespace configurations.
Show sources
- New DirtyClone Linux Kernel Flaw Lets Local Users Gain Root via Cloned Packets — thehackernews.com — 26.06.2026 14:51
- New DirtyClone Linux Kernel Flaw Lets Local Users Gain Root via Cloned Packets — thehackernews.com — 26.06.2026 14:51