Fragnesia: una nuova vulnerabilità di escalation dei privilegi nel kernel Linux

Scoperta una nuova falla di sicurezza nel kernel Linux, chiamata Fragnesia (CVE-2026-46300), che consente a un utente locale non privilegiato di ottenere i privilegi di amministratore (root) su una distribuzione GNU/Linux.

@linux #UnoLinux #gnulinux #linux

#kernellinux #gnulinuxitalia #linuxitalia #fragnesia

#vulnerabilitalinux

https://www.laseroffice.it/blog/2026/05/14/fragnesia-una-nuova-vulnerabilita-di-escalation-dei-privilegi-nel-kernel-linux/

Fragnesia: una nuova vulnerabilità di escalation dei privilegi nel kernel Linux - Aggregatore GNU/Linux e dintorni

Scoperta una nuova falla di sicurezza nel kernel Linux, chiamata Fragnesia (CVE-2026-46300), che consente a un utente locale non privilegiato di ottenere i

Aggregatore GNU/Linux e dintorni

this morning's urgent #fedora #kernel security updates are at https://bodhi.fedoraproject.org/updates/FEDORA-2026-03be3dc34b (f43) and https://bodhi.fedoraproject.org/updates/FEDORA-2026-2aeb7d033a (f44). f42 and rawhide pending. we make no promises about this afternoon...

(these have fixes for the latest #fragnesia exploit path, and https://github.com/0xdeadbeefnetwork/ssh-keysign-pwn )

«„Fragnesia“ — Nächste Rechteausweitungslücke im Linux-Kernel:
Microsoft warnt vor einer weiteren Variante der CopyFail-Lücke namens „Fragnesia“ im Linux-Kernel. Sie verschafft root-Rechte.»

Mist, die nächste Linux-Lücke heute und dies noch von Microsoft entdeckt. Moment mal, könnte es sein dass es…, oder doch nicht…, ach komm…, ne es ist…?!??

🐧 https://www.heise.de/news/Fragnesia-Microsoft-warnt-vor-weiterer-Rechteausweitungsluecke-in-Linux-11294817.html

#linux #fragnesia #microsoft #itsicherheit #lucke #copyfail #root #kernel #itsec #it #linuxkernel #opensource #0day #zeroday

„Fragnesia“: Nächste Rechteausweitungslücke im Linux-Kernel

Microsoft warnt vor einer weiteren Variante der CopyFail-Lücke namens „Fragnesia“ im Linux-Kernel. Sie verschafft root-Rechte.

heise online
this is scaremongering - there is no patch for Debian 11 for Fragnesia Linux kernel hack - https://www.zdnet.com/article/third-major-linux-kernel-flaw-in-two-weeks-found-by-ai/
#ai #linux #kernel #fragnesia #dirtyfrag #security #bugs #debian
The third major Linux kernel flaw in two weeks has been found - thanks to AI

AI is exposing Linux security holes faster than developers can patch them. Fragnesia is the latest. Here's what we know about it.

ZDNET

Rocky Linux team introduced an optional, opt-in Security Repository to provide urgent security hot-fixes for critical Kernel vulnerabilities.

More details here: https://ostechnix.com/rocky-linux-security-repository-emergency-fixes/

#RockyLinux #SecurityRepository #Kernel #Copyfail #Drityfrag #Fragnesia #KernelPatch

Rocky Linux Launched Security Repository to Fix Critical Vulnerabilities - OSTechNix

Rocky Linux team introduced an optional, opt-in Security Repository to provide urgent security hot-fixes for critical kernel vulnerabilities.

OSTechNix
How Fedora is responding to recent Kernel vulnerabilities - Fedora Magazine

Learn about the Fedora Project's process for managing package security vulnerabilities, in the context of recent Linux Kernel disclosures.

Fedora Magazine

#Microsoft has patched about 136 CVEs.

#Adobe has pushed out about 52 patches.

#Google more than 30 across its product lines.

All of this in May-2026.

#Linux Kernel has about 3 issues, ssh-keysign-pwn, #fragnesia and #dirty-frag, till now. This is expected to go up. Patches from #Microsoft, #Google, #Apple, etc are paid for. For many Open Source projects that is not the case. They are work done by unpaid volunteers. Expect burn out to happen. Expect no embargoes.

#OpenSource #Linux #Kernel

It’s hard enough these days to keep up to date with Linux security. Dirty Frag and Copy Fail are already keeping countless Linux admins busy, and then, the day before yesterday, Fragnesia came along: https://github.com/v12-security/pocs/tree/main/fragnesia
#Linux #ITSecurity #Fragnesia
pocs/fragnesia at main · v12-security/pocs

poc it like it's hot. Contribute to v12-security/pocs development by creating an account on GitHub.

GitHub

Und da ist die nächste Lücke im Kernel. Gerade bin ich ein wenig froh kein direkter SysAdmin mehr zu sein

https://www.golem.de/news/fragnesia-schon-wieder-gefaehrliche-root-luecke-im-linux-kernel-2605-208702.html

#Dirtyfrag #Fragnesia #SysAdmin

Fragnesia: Schon wieder gefährliche Root-Lücke im Linux-Kernel - Golem.de

Dirty Frag und Copy Fail beschäftigen bereits unzählige Linux-Admins. Die nächste Root-Lücke ist bereits identifiziert - und die Patches sind spät dran.

Golem.de
Linux's Latest Vulnerability Allows Reading Root-Owned Files By Unprivileged Users

Following Dirty Frag, Fragnesia, and other Linux kernel vulnerabilities making themselves known in recent days, the latest now is ssh-keysign-pwn.