Security Notice for Linux Kernel CVE-2026-43284 ('Dirty Frag')
Summary
A security vulnerability (CVE-2026-43284) found in the Linux kernel may allow a local unprivileged user to escalate privileges to root. To exploit this vulnerability, an attacker only needs:
- the ability to create user namespaces
- permission to execute at least one setuid binary (for example,
sudo,passwd, orfusermount)
Any standard Linux user account with shell access typically meets these requirements.
