Linux Security
Ongoing coverage on Linux Security.
Latest coverage
Fragnesia and ssh-keysign-pwn are the latest Linux security problems
Two new Linux security vulnerabilities, Fragnesia and ssh-keysign-pwn, have been disclosed. Fragnesia is a local privilege escalation exploit within the Dirty Frag class, allowing arbitrary writes to read-only kernel files. Ssh-keysign-pwn enables unprivileged users to read root-owned files. Users are advised to keep their systems updated.
Linux security flaws Dirty Frag and Copy Fail are a good reminder to stay up to date
Two significant security vulnerabilities, Dirty Frag and Copy Fail, have been discovered in Linux systems, allowing unprivileged local users to gain root access. Patches are being rolled out across various distributions, and a temporary workaround for Dirty Frag is available via the terminal. Users are advised to update their systems promptly.
'A single 732-byte Python script can be used to obtain root on essentially all Linux distributions shipped since…
A severe vulnerability nicknamed 'Copy Fail' allows local users to gain root privileges on most Linux distributions released since 2017 by exploiting a flaw in the page cache. Theori disclosed the vulnerability (CVE-2026-31431), which threat actors are already using in the wild, prompting CISA to add it to its Known Exploited Vulnerabilities Catalog.