• News/
  • https://www.zdnet.com/article/dirty-frag-new-linux-bug-system-at-risk-no-easy-fix/

Dirty Frag is a new Linux bug putting your system at risk - and there's no easy fix yet

ZDNet
·
Steven Vaughan-Nichols
·
Published May 11, 2026
·
Updated

Follow ZDNET: Add us as a preferred source on Google. Linux has been having a rough few weeks. First, the Copy Fail security hole was uncovered by AI researchers. In that case, the patches were quickly made and distributed. We weren't so lucky with the newly disclosed Linux kernel flaw, dubbed Dirty Frag, which was also, it seems, discovered with AI's help, but patches are still in the works. Also: Linux is getting a security wake-up call - why it was inevitable and I'm not worried Security researcher Hyunwoo Kim, who disclosed the issue on May 7, describes Dirty Frag as an extension of the same bug class as previous high-profile Linux kernel flaws, 2022's Dirty Pipe and Copy Fail. Like those flaws, Dirty Frag exploits kernel code paths that write to memory pages accessible to unprivileged user space, but it targets a different structure: the fragment field of sk_buff networking buffers. Also: Immutable Linux delivers serious security - here are your 5 best options Kim told the Linux kernel maintainers about the vulnerability at the end of April. Unfortunately, the coordinated disclosure and patch processes quickly went off the rails. On May 7, while distributions were still shipping fixes for the related Copy Fail flaw, detailed Dirty Frag technical information and a working proof-of-concept exploit for the xfrm-ESP component appeared online after an embargo break by an unrelated third party. Now, we're all in trouble. Dirty Frag is a local privilege escalation vulnerability...

Read full article

Affected Software

7 affected components
Linux Kernel
Canonical Ubuntu
Red Hat Red Hat Enterprise Linux
CentOS Project CentOS Stream
AlmaLinux Almalinux
Fedora Project Fedora
openSUSE openSUSE Tumbleweed
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the primary issue highlighted in the article?

The article discusses the Dirty Frag vulnerability affecting the Linux operating system.

2

How does the Dirty Frag bug impact Linux security?

Dirty Frag poses a significant risk as it potentially allows unauthorized access and exploitation of system resources.

3

Which Linux distributions are specifically mentioned as being affected by Dirty Frag?

The affected distributions include Ubuntu, Red Hat Enterprise Linux, CentOS Stream, AlmaLinux, Fedora, and openSUSE Tumbleweed.

4

What is the current status regarding fixes for the Dirty Frag vulnerability?

There is no easy fix currently available for the Dirty Frag vulnerability.

5

What recent event in the Linux community is mentioned prior to the Dirty Frag issue?

The article references the earlier Copy Fail security hole that was uncovered by AI researchers.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203