Monday, May 18, 2026
No Result
View All Result
  • Home
  • Guest Post
  • Submit Review Article
  • Contact
Somali Update
  • Headlines
    • Politics
  • Auto
    • Bike
    • Car
  • Business
    • Finance
    • Funding
    • Internet Marketing
    • Entrepreneurship
    • Startups
    • Insurance
    • Real Estate
  • Crypto
    • Bitcoin
    • Ethereum
    • Altcoins
    • Crypto Airdrop
    • ICO News
  • Entertainment
    • Poll
    • Quiz
  • Lifestyle
    • Health
    • Fashion
    • Food
    • Romance
    • Travel
  • Sports
    • Baseball
    • Basketball
    • Cricket
    • Football
    • Hockey
    • NFL
    • Tennis
    • WWE
  • Tech
    • Gadgets
    • Hardware
    • Software
    • Android
    • iOS
    • Social Media
  • Casino
    • Betting
  • Headlines
    • Politics
  • Auto
    • Bike
    • Car
  • Business
    • Finance
    • Funding
    • Internet Marketing
    • Entrepreneurship
    • Startups
    • Insurance
    • Real Estate
  • Crypto
    • Bitcoin
    • Ethereum
    • Altcoins
    • Crypto Airdrop
    • ICO News
  • Entertainment
    • Poll
    • Quiz
  • Lifestyle
    • Health
    • Fashion
    • Food
    • Romance
    • Travel
  • Sports
    • Baseball
    • Basketball
    • Cricket
    • Football
    • Hockey
    • NFL
    • Tennis
    • WWE
  • Tech
    • Gadgets
    • Hardware
    • Software
    • Android
    • iOS
    • Social Media
  • Casino
    • Betting
No Result
View All Result
Somali Update
No Result
View All Result

DirtyDecrypt Linux Exploit Grants Root Access Now

by Rose Fincher
3 hours ago
in News
Reading Time: 4 mins read
0
Home News
Share on FacebookShare on TwitterShare on WhatsAppShare on Telegram

A working proof-of-concept exploit for a dangerous Linux kernel flaw called DirtyDecrypt is now publicly available. Attackers can use it to gain full root access on vulnerable Linux systems. With similar flaws already being exploited in real-world attacks, security experts say there is no time to waste.

What DirtyDecrypt Is and How It Works

DirtyDecrypt, also known as DirtyCBC, is a local privilege escalation vulnerability buried inside the Linux kernel’s rxgk module.

The flaw exists because of a missing Copy-On-Write (COW) guard inside a function called rxgk_decrypt_skb. That gap allows an attacker with local system access to write to pagecache memory they should never touch, ultimately opening a path to full root control over the machine.

The V12 security team independently discovered and reported this flaw on May 9, 2026. When they contacted the Linux kernel maintainers, they were told the bug was already patched upstream as a duplicate of a previously known issue.

“We found and reported this on May 9, 2026, but was informed it was a duplicate by the maintainers,” V12 stated. “It’s a rxgk pagecache write due to missing COW guard in rxgk_decrypt_skb. See poc.c for more details.”

While no official CVE ID has been assigned directly to DirtyDecrypt, principal vulnerability analyst Will Dormann at Tharros confirmed the flaw lines up precisely with CVE-2026-31635, which was patched in the Linux mainline on April 25, 2026.

DirtyDecrypt Linux kernel root privilege escalation exploit

Which Linux Distros Face the Real Risk

Not every Linux system is in danger. Successful exploitation requires the target machine to be running a Linux kernel compiled with the CONFIG_RXGK configuration option. This setting enables RxGK security support for the Andrew File System (AFS) client and its underlying network transport.

Most mainstream distributions do not ship with this option turned on by default. The systems most exposed are those that closely track the latest upstream kernel releases.

The currently identified at-risk distributions are:

  • Fedora
  • Arch Linux
  • openSUSE Tumbleweed

The V12 team’s proof-of-concept exploit has only been confirmed working on Fedora and the mainline Linux kernel so far. Testing on other distributions is still ongoing.

Users running enterprise-focused releases like Red Hat Enterprise Linux or Ubuntu LTS are likely at lower risk, as those builds typically do not enable CONFIG_RXGK out of the box. Still, system administrators should verify their kernel build flags to be certain.

DirtyDecrypt Joins a Dangerous 2026 Trend

DirtyDecrypt does not stand alone. It belongs to the same broad vulnerability class as a string of other Linux root escalation flaws researchers have uncovered in a short span of time this year.

Here is a clear breakdown of the related vulnerabilities discovered in 2026:

Vulnerability Current Status Key Notes
DirtyDecrypt (DirtyCBC) Patched, POC now public Targets rxgk module
Dirty Frag Patched Shares mitigation with DirtyDecrypt
Fragnesia Patched Same vulnerability class
Copy Fail Actively exploited in the wild Added to CISA KEV on May 1, 2026
Pack2TheRoot Patched in April 2026 Undetected for nearly 12 years

The most alarming situation right now is Copy Fail, which attackers are already using in active, real-world attacks.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Copy Fail to its Known Exploited Vulnerabilities catalog on May 1, 2026. Federal agencies were ordered to patch their Linux systems within two weeks, setting a hard deadline of May 15, 2026.

CISA’s message was direct and firm. “This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise,” the agency warned.

The Pack2TheRoot case added its own shock to the situation. That root-privilege escalation bug sat undetected inside the PackageKit daemon for nearly 12 years before researchers caught it in April 2026. The pace of these discoveries makes clear that attackers and researchers are both digging deep into Linux kernel code right now.

How to Secure Your Linux System Right Now

The most effective fix is straightforward. Install the latest kernel updates for your Linux distribution without delay. Users on Fedora, Arch Linux, and openSUSE Tumbleweed should check their update managers and apply any available kernel patches today.

For those who cannot patch immediately, a temporary workaround is available. It is the same mitigation command used for the Dirty Frag vulnerability. However, applying it will disable IPsec VPNs and AFS distributed network file systems on your machine as a side effect.

Run this command in your terminal to block the vulnerable kernel modules:

sh -c "printf 'install esp4 /bin/false\ninstall esp6 /bin/false\ninstall rxrpc /bin/false\n' > /etc/modprobe.d/dirtyfrag.conf; rmmod esp4 esp6 rxrpc 2>/dev/null; echo 3 > /proc/sys/vm/drop_caches; true"

This command prevents the vulnerable modules from loading at all, cutting off the attack path before it can be used against your system.

Enterprise and production environment admins should review the network trade-offs carefully before running this workaround. If IPsec VPNs are critical to your operations, coordinate with your security team before applying it.

A proper kernel patch is always the cleaner and more reliable long-term fix.

DirtyDecrypt is another sharp reminder that even one of the most trusted operating systems in the world is not immune to serious security gaps. With a live exploit now out in the open and Copy Fail already being weaponized in real attacks, the Linux security landscape is moving fast in 2026. The discovery of Pack2TheRoot, a flaw that hid for nearly 12 years, only deepens the concern about what else might still be lurking. Every unpatched system is a door left open. Update now, verify your kernel configuration, and do not wait for attackers to walk in first. What do you think about the growing wave of Linux kernel vulnerabilities being discovered in 2026? Drop your thoughts in the comments below.

Rose Fincher

Rose Fincher

Rose Fincher is a talented author and a seasoned senior content writer. With a flair for words and a passion for storytelling, she expertly weaves engaging narratives that captivate readers and leave a lasting impact. As a senior content writer, she brings a wealth of knowledge and creativity to her work, delivering high-quality content that resonates with audiences.

Related Posts

Ella Langley female artist of the year ACM Awards 2026

Ella Langley Dominates 61st ACM Awards With 5 Wins

2 hours ago
William Kamkwamba homemade windmill rural Malawi famine survival

A Boy, a Windmill, and a Story the World Won’t Forget

2 days ago
Eurovision 2026 grand final Vienna performances protests and favorites

Eurovision 2026 Final: Pop Clashes With Protests in Vienna

2 days ago
Chicago Bulls 2026 NBA Draft No. 15 pick prospects

Bulls’ No. 15 Draft Pick: 3 Players They Must Target

2 days ago
Microsoft Teams Together mode retirement video call interface

Microsoft Teams Kills Together Mode to Boost Video Quality

3 days ago
Britney Spears restaurant knife meltdown denial statement

Britney Spears Slams ‘Knife Meltdown’ Story as False

3 days ago

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

SEARCH

No Result
View All Result

TRENDING

  • Trending
  • Comments
  • Latest
Raja Rani Coupon Result

Raja Rani Result Today: Raja Rani Result 28th August Live Updates

August 28, 2024
SkymoviesHD

SkymoviesHD Proxy to Unblock Site – SkymoviesHD Movies Download

March 6, 2024
Control Bionics Secures Major US Reimbursement for NeuroNode Device

Control Bionics Secures Major US Reimbursement for NeuroNode Device

August 19, 2024
Moviesda

Moviesda Proxy to Unblock Links – Moviesda Movie Download

March 6, 2024
near lossless electrical transmission discovery by mit scientists

Near-Lossless Electrical Transmission: A Breakthrough by MIT Scientists

September 12, 2024
Bigg Boss 7 Tamil Contestants Salary

Bigg Boss 7 Tamil Contestants Salary Per Day Revealed

January 9, 2024
Kolkata FF Fatafat Result

Kolkata FF Fatafat Result 24th January 2024 Live Updates

January 24, 2024
Vegamovies

Vegamovies Proxy to Unblock Links – Vegamovies Movies Download

March 6, 2024
iBOMMA

iBOMMA Proxy to Unblock, Movies – IBOMMA Movie Download

March 6, 2024
Tamilblasters

TamilBlasters Proxy – Unblock Links, Tamilblasters Movies Download

March 6, 2024

Business Ideas with Low Investment and High Profit

1
Bhutan Teer Result 2021

Bhutan Teer Result Today Live: Bhutan Teer Result 3rd January Update

1

Reasons to Join the PKT Cash Crypto Network

1
Kolkata FF Fatafat Result

Kolkata FF Fatafat Result 24th January 2024 Live Updates

1
Coinbase

Coinbase Crypto Exchange hires Jeff Horowitz as their CCO

0
Kucoin

KuCoin Scam? Office Location issue clarified

0
Nokia 5G mobile

Nokia 5G Mobile to be launched with T-Mobile soon

0
CasinoBuzz

Casino.Buzz: One of the most Informative Online Casino Review Website

0
Facebook Ban alex jones

Facebook Suspends Alex Jones for Hate Speech

0
Good Rummy Party

What Makes a Good Rummy Party?

0
Ella Langley female artist of the year ACM Awards 2026

Ella Langley Dominates 61st ACM Awards With 5 Wins

May 18, 2026
DirtyDecrypt Linux kernel root privilege escalation exploit

DirtyDecrypt Linux Exploit Grants Root Access Now

May 18, 2026
William Kamkwamba homemade windmill rural Malawi famine survival

A Boy, a Windmill, and a Story the World Won’t Forget

May 16, 2026
Eurovision 2026 grand final Vienna performances protests and favorites

Eurovision 2026 Final: Pop Clashes With Protests in Vienna

May 16, 2026
Chicago Bulls 2026 NBA Draft No. 15 pick prospects

Bulls’ No. 15 Draft Pick: 3 Players They Must Target

May 16, 2026
Microsoft Teams Together mode retirement video call interface

Microsoft Teams Kills Together Mode to Boost Video Quality

May 15, 2026
Britney Spears restaurant knife meltdown denial statement

Britney Spears Slams ‘Knife Meltdown’ Story as False

May 15, 2026
Apple stock AI growth Warren Buffett long-term investment outlook

Apple Stock Eyes 10-Year Surge With AI and Buffett Backing

May 14, 2026
Spencer Pratt 2026 LA mayor race viral AI campaign

Spencer Pratt’s Viral Videos Are Rattling LA’s Mayor Race

May 14, 2026
dua lipa samsung tv box lawsuit

Dua Lipa Hits Samsung With $15 Million Lawsuit

May 12, 2026

ABOUT US

From global politics to cultural trends, we bring you comprehensive coverage and diverse perspectives. Stay connected with the international community and explore stories from around the globe. Engage with our thought-provoking articles and stay informed about the world’s most pressing issues.

Contact us at ceo.somaliupdate@gmail.com

ADVERTISE WITH US

We accept following advertisement methods in our website.

  • Guest Post
  • Sponsored Post
  • Banner Ad
  • Homepage Ad
  • Sidebar Ad
  • Niche Edit
  • Link Ad
  • Review Article

POPULAR CATEGORIES

List of Popular categories in our websites which are loved more frequently by our beloved readers.

  • AUTO
  • BUSINESS
  • CRYPTO
  • GAMBLING
  • SPORTS
  • TECH
  • HEALTH

THIS WEEK POLLS

Sorry, there are no polls available at the moment.
  • Polls Archive
  • Home
  • Guest Post
  • Submit Review Article
  • Contact

© 2023 SOMALIUPDATE - Developed by VISION

No Result
View All Result
  • Headlines
    • Politics
  • Auto
    • Bike
    • Car
  • Business
    • Finance
    • Funding
    • Internet Marketing
    • Entrepreneurship
    • Startups
    • Insurance
    • Real Estate
  • Crypto
    • Bitcoin
    • Ethereum
    • Altcoins
    • Crypto Airdrop
    • ICO News
  • Entertainment
    • Poll
    • Quiz
  • Lifestyle
    • Health
    • Fashion
    • Food
    • Romance
    • Travel
  • Sports
    • Baseball
    • Basketball
    • Cricket
    • Football
    • Hockey
    • NFL
    • Tennis
    • WWE
  • Tech
    • Gadgets
    • Hardware
    • Software
    • Android
    • iOS
    • Social Media
  • Casino
    • Betting

© 2023 SOMALIUPDATE - Developed by VISION