CVE Tools

Новая Linux-уязвимость Bad Epoll позволяет получить root-права и затрагивает Android

Хакер (xakep.ru)By Мария Нефёдова

PoC publicLinux kernelAndroid

Our summary

Researchers published details and a PoC for the Linux kernel vulnerability Bad Epoll, which is a use-after-free in epoll that can let an unprivileged local process gain root privileges. The issue is tracked as CVE-2026-46242 (CVSS 7.8) and affects Linux desktops, servers, and Android devices; it was confirmed on Pixel 10 with Linux 6.6, while older 6.1-based devices are not affected. No workaround is known, so administrators should patch as soon as possible (e.g., via distributor backports or the upstream fix) because vulnerable kernel versions are described as 6.4 and newer.

Read at Хакер (xakep.ru)

Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store