Linux kernel Fragnesia flaw enables root escalation (opens in new tab)
Security researchers disclosed Fragnesia, tracked as CVE-2026-46300, a Linux kernel local privilege escalation flaw in the XFRM/ESP area that can let an unprivileged local user gain root access. Reports tied the bug to ESP-in-TCP and page-cache handling of read-only files. The disclosure followed the recent Dirty Frag vulnerability. Several sources described Fragnesia as part of the same page-cache-related class while noting it is a separate ESP/XFRM bug. A public proof-of-concept exploit exi...
Read the original article