Новая Linux-уязвимость Bad Epoll позволяет получить root-права и затрагивает Android
PoC publicLinux kernelAndroidOur summary
Researchers published details and a PoC for the Linux kernel vulnerability Bad Epoll, which is a use-after-free in epoll that can let an unprivileged local process gain root privileges. The issue is tracked as CVE-2026-46242 (CVSS 7.8) and affects Linux desktops, servers, and Android devices; it was confirmed on Pixel 10 with Linux 6.6, while older 6.1-based devices are not affected. No workaround is known, so administrators should patch as soon as possible (e.g., via distributor backports or the upstream fix) because vulnerable kernel versions are described as 6.4 and newer.
Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.