Dirty Frag: Unpatched Linux vulnerability delivers root access
2026-05-08T14:51:51Z•d041eb7079efa939a37c367188f8116bed83c218b960371142cd948207970598
Dirty Fragai-securityandroid studiocloud remediationipsecivantikernellinuxlocal privilege escalationopenairemote code executionrxrpcsapsnykxfrmzero-day
What happened
Recent security news includes a new Linux local privilege escalation family dubbed “Dirty Frag” (two flaws: CVE-2026-43284 — xfrm‑ESP Page‑Cache Write, patched — and an unpatched RxRPC Page‑Cache Write reserved as CVE-2026-43500) with a public PoC that can deliver local root. Ivanti fixed five high‑severity issues in Endpoint Manager Mobile and warned that CVE-2026-6973 (improper input validation leading to remote code execution) has been observed exploited in limited zero‑day attacks. Additional industry updates cover developer policy tooling in Android Studio, vendor integrations of gener‑AI
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- helpnetsecurity
- Record identifier
- d041eb7079efa939a37c367188f8116bed83c218b960371142cd948207970598
- Enrichment time
- 2026-05-08T14:51:51Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.