CVE Tools

Linux-уязвимость DirtyClone помогает повысить права до уровня root

Хакер (xakep.ru)By Мария Нефёдова

PoC publicLinux kernel

Our summary

Researchers at JFrog disclosed the DirtyClone local privilege escalation vulnerability in the Linux kernel, tracked as CVE-2026-43503 (CVSS 8.8), and published a PoC. The flaw lets an attacker use zero-copy networking to modify pages in the host’s page cache—enabling tampering with instructions in a privileged binary (e.g., /usr/bin/su) and ultimately obtaining root access without changing the on-disk file.

Fixes were merged into mainline Linux on 21 May 2026 and included in Linux 7.1-rc5 on 24 May, with backports also delivered to stable and LTS branches. The vulnerability is especially risky for multi-tenant systems, CI runners, container hosts, and Kubernetes clusters because the page cache is shared across the host.

Read at Хакер (xakep.ru)

Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store