Linux kernel flaw lets unprivileged users gain root access

Qualys researchers have identified a logic flaw in the Linux kernel that enables unprivileged local users to disclose sensitive files and execute arbitrary commands as root.

The vulnerability affects default installations of several major Linux distributions. Qualys's Threat Research Unit discovered the issue and detailed it in a blog post published on Friday.

Makala yanayohusiana

Illustration depicting the Linux CopyFail vulnerability enabling root access exploits alongside Ubuntu's DDoS-induced outage.
Picha iliyoundwa na AI

Linux CopyFail exploit threatens root access amid Ubuntu outage

Imeripotiwa na AI Picha iliyoundwa na AI

A critical Linux vulnerability known as CopyFail, tracked as CVE-2026-31431, allows attackers to gain root access on systems running kernels since 2017. Publicly released exploit code has heightened risks for data centers and personal devices. Ubuntu's infrastructure has been offline for over a day due to a DDoS attack, hampering security communications.

A security researcher has disclosed Dirty Frag, a new Linux kernel exploit that allows local users to gain root privileges. The flaw affects major distributions and remains unpatched on most systems despite earlier fixes for a similar issue.

Imeripotiwa na AI

A new Linux local privilege escalation vulnerability known as Fragnesia has been made public. The flaw is described as similar to Dirty Frag and involves an ESP/XFRM logic bug.

A newly published zero-day exploit allows attackers with physical access to bypass BitLocker encryption on Windows 11 devices in seconds. The attack, named YellowKey, targets the default TPM-only configuration and grants full access to encrypted drives via a simple USB-based method.

Imeripotiwa na AI

Greg Kroah-Hartman, maintainer of the Linux kernel, stated that AI-driven code review tools have become genuinely useful. He told The Register that the technology reached an inflection point about a month ago, leading to actionable bug reports.

Alhamisi, 21. Mwezi wa tano 2026, 05:10:13

Rust proposal targets 80 percent of linux kernel cves

Jumatatu, 18. Mwezi wa tano 2026, 02:56:03

Linus Torvalds flags AI reports flooding kernel security list

Jumamosi, 16. Mwezi wa tano 2026, 01:18:29

Linux 7.1 kernel adds rules for security bugs and ai reports

Jumatatu, 11. Mwezi wa tano 2026, 16:32:24

Linux kernel could gain kill switch for vulnerable functions

Jumanne, 5. Mwezi wa tano 2026, 17:44:08

US government issues urgent CopyFail warning as Linux patches roll out

Jumatatu, 4. Mwezi wa tano 2026, 03:03:04

Red Hat directs users to security page for CopyFail vulnerability

Ijumaa, 10. Mwezi wa nne 2026, 14:10:00

Greg Kroah-Hartman runs AI-assisted fuzzing on Linux kernel

Tovuti hii inatumia vidakuzi

Tunatumia vidakuzi kwa uchambuzi ili kuboresha tovuti yetu. Soma sera ya faragha yetu kwa maelezo zaidi.
Kataa