Proof-of-Concept Exploit Released for Linux ‘Bad Epoll’ Root Access Vulnerability
PoC publicepollOur summary
A proof-of-concept exploit has been released for the Linux “Bad Epoll” issue, which is a race-condition use-after-free in the epoll subsystem. The vulnerability is tracked as CVE-2026-46242 and affects Linux kernels 6.4+ (including confirmation on Pixel 10 devices using kernel 6.6), where attackers may achieve kernel memory leakage and root privileges. Since this can be used to bypass privilege boundaries, it matters for desktops, servers, and Android systems that run affected kernels.
SecurityWeek publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.