CVE Tools

Proof-of-Concept Exploit Released for Linux ‘Bad Epoll’ Root Access Vulnerability

SecurityWeekBy Ionut Arghire

PoC publicepoll

Our summary

A proof-of-concept exploit has been released for the Linux “Bad Epoll” issue, which is a race-condition use-after-free in the epoll subsystem. The vulnerability is tracked as CVE-2026-46242 and affects Linux kernels 6.4+ (including confirmation on Pixel 10 devices using kernel 6.6), where attackers may achieve kernel memory leakage and root privileges. Since this can be used to bypass privilege boundaries, it matters for desktops, servers, and Android systems that run affected kernels.

Read at SecurityWeek

SecurityWeek publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store