Back to Feed
VulnerabilitiesMay 8, 2026

‼️ Dirty Frag: A Universal Linux Local Privilege Escalation via Page-Cache Write Primitives GitH...

Dirty Frag Linux LPE vulnerability in kernel page-cache xfrm-ESP subsystem disclosed

Summary

CVE-2026-43284 is a page-cache write flaw in the Linux kernel's xfrm-ESP (IPsec) subsystem allowing local privilege escalation. The vulnerability enables local users to corrupt kernel memory through page-cache write primitives. Patches have been released and details are publicly available on GitHub.

Indicators of Compromise

  • cve — CVE-2026-43284

Entities

Linux kernel (technology)xfrm-ESP (IPsec) (technology)