#LinuxRoot
A privilege escalation flaw dubbed CopyFail has been lurking in Linux since 2017, only to be grassed up by an AI model. Root access for the price of a standard login, how generous.

#LinuxRoot #PatchTuesday
May 8, 2026 at 6:43 AM
DirtyFrag exploits two Linux kernel bugs, CVE-2026-43284 and CVE-2026-43500, enabling local root access on major distros including Ubuntu, RHEL, Fedora, CentOS Stream, AlmaLinux, and openSUSE. #LinuxRoot #KernelExploit #USA
DirtyFrag: Two Kernel Bugs Give Root on All Major Linux Distros
DirtyFrag is a Linux local privilege escalation that abuses two page-cache write bugs, CVE-2026-43284 and CVE-2026-43500, affecting major distributions including Ubuntu, RHEL, Fedora, CentOS Stream, AlmaLinux, and openSUSE. A public GitHub PoC spread quickly and drew attention in multiple countries, while no confirmed in-the-wild campaign has been reported yet. #DirtyFrag #CVE-2026-43284 #CVE-2026-43500 #Ubuntu #RHEL #Fedora #CentOSStream #AlmaLinux #openSUSE
www.hendryadrian.com
May 8, 2026 at 9:15 PM
The Pack2TheRoot flaw (CVE-2026-41651) in PackageKit daemon allowed local Linux users to escalate privileges and manage system packages since 2014. Fixed in PackageKit 1.3.5 after Deutsche Telekom’s report. #Pack2TheRoot #LinuxRoot #Germany
New ‘Pack2TheRoot’ flaw gives hackers root Linux access
A new local privilege-escalation vulnerability dubbed Pack2TheRoot (CVE-2026-41651) in the PackageKit daemon can allow local Linux users to install or remove system packages and gain root privileges. The flaw, present since PackageKit 1.0.2 (Nov 2014) through 1.3.4, was reported by the Deutsche Telekom Red Team and fixed in PackageKit 1.3.5; users should patch immediately. #Pack2TheRoot #CVE-2026-41651
www.hendryadrian.com
April 24, 2026 at 9:30 PM
CISA Adds Actively Exploited Linux Root Access Bug CVE-2026-31431 to KEV reconbee.com/cisa-adds-ac...

#CISA #linuxrootaccess #CVE #Linuxroot #cyberattack
reconbee.com
May 4, 2026 at 6:07 AM