New Linux kernel vulnerability: Dirty Frag family RxGK variants discovered

Linux 커널 7.1-rc2에서 Dirty Frag 취약점 패밀리의 새로운 권한 상승 변종인 RxGK가 발견되었습니다. 이 취약점은 AES-256-CTS-HMAC-SHA1-96 AEAD 복호화 과정에서 페이지 캐시가 변조되어 비특권 사용자가 root 권한을 획득할 수 있게 합니다. 기존 CVE-2026-43500 Dirty Frag 취약점과 관련 있으며, 패치는 이미 메인라인에 반영되어 배포 중입니다. 사용자들은 최신 커널 업데이트를 신속히 적용해야 하며, 연구진은 추가 변종 탐색과 대응을 지속할 예정입니다.

https://ikotaslabs.com/news/2026-05-11

#linuxkernel #security #vulnerability #privilegeescalation #dirtyfrag

Linux Kernelの権限昇格脆弱性 Dirty FragファミリにおけるRxGKバリアントの発見・報告 - 株式会社Ikotas Labs

弊社メンバーがLinuxカーネルのRxRPC RxGKセキュリティクラスで、Dirty Fragファミリの新しい権限昇格バリアントを発見しました。

A proposed Linux kernel patch adds a “killswitch” mechanism letting admins disable vulnerable kernel functions at runtime until security fixes are released. 🐧
The patch targets threats like LPE exploits, taints modified kernels with a new flag, and was developed with documented AI-assisted contributions. 🔒

🔗 https://itsfoss.com/news/linux-killswitch-proposal/

#TechNews #Linux #Kernel #LinuxKernel #CyberSecurity #OpenSource #LPE #NVIDIA #FOSS #SysAdmin #AI #Claude #Security #Infrastructure #KillSwitch #Patch

Linux is Getting a Kill Switch!

This AI-assisted patch would let admins disable vulnerable kernel functions until a proper fix ships.

It's FOSS

We are moving fast!(As usual) ...aren't we? 😜

#linuxadmin #linuxkernel #opensource #operatingsystem #kernel

rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present - kernel/git/torvalds/linux.git - Linux kernel source tree

#Linux 7.1-rc3 is out:

https://lore.kernel.org/lkml/CAHk-=wgC[email protected]/

Linus writes: ""[…] this [rc] answers the "is 7.1 continuing the larger size pattern that we saw with 7.0?" question, and the answer is yes: that wasn't a fluke brought on by a .0 release - it simply seems to be the new normal.""

#LinuxKernel #kernel

Linux 7.1-rc3 - Linus Torvalds

Linux 7.1 RC3 released!

Linux 7.1 RC3 is now live for developers and curious users to try out. All the interesting changes from performance improvements to bug fixes have been integrated to this release candidate.

The official announcement from the kernel mailing list says:

It's Sunday afternoon, and we all know what that means: Mother's Day.

But also your regularly scheduled kernel release candidate.

And I think this answers the "is 7.1 continuing the larger size pattern that we saw with 7.0?" question, and the answer is yes: that wasn't a fluke brought on by a .0 release - it simply seems to be the new normal.

This time around, about a third of the patch is networking - both on the driver side and in core. And related selftests.

The rest is pretty spread out, with other drivers (sound and gpu being the bigger ones, but there's a little bit of everything in there), architecture updates (powerpc and x86, but also some loongarch and parisc), and various other fixes (smb updates, various core kernel updates, Rust infrastructure, selinux, documentation etc).

The shortlog below isn't exactly _short_, but not so long that you can't scroll through it to get some kind of idea of the details.

Why not try out this awesome pre-release of Linux 7.1?

#Computer #Computers #Kernel #Laptop #Laptops #Linux #LinuxKernel #news #Tech #Technology #update
Linux 7.1 RC3 released!

Linux 7.1 RC3 is now live for developers and curious users to try out. All the interesting changes from performance improvements to bug fixes have been integrated to this release candidate. The off…

Aptivi

One Agent Sandbox Is Not Enough

Multikernel이 발표한 sandlock.mcp는 AI 에이전트 내 각 도구별로 권한을 엄격히 제한하는 리눅스 커널 기반 샌드박스 레이어입니다. 기존 컨테이너 방식과 달리 도구별로 파일시스템, 네트워크, 환경변수 접근 권한을 명시적으로 부여하며, 권한 없는 도구는 기본적으로 읽기 전용 및 네트워크 차단 상태로 실행됩니다. 이를 통해 도구 간 권한 남용이나 프롬프트 인젝션 공격 시 피해를 최소화하며, 클라이언트 및 서버 측 모두에 적용 가능한 다중 계층 샌드박싱을 지원합니다. 오픈소스로 공개되어 AI 에이전트 보안과 신뢰성 강화에 즉시 활용할 수 있습니다.

https://multikernel.io/2026/03/25/sandlock-mcp-per-tool-sandboxing/

#aiagent #sandboxing #linuxkernel #security #multikernel

Per-Tool Sandboxing for AI Agents: Why One Sandbox Is Not Enough

Enterprise Linux Kernel Solutions for optimal performance and reliability.

#Linux 7.1-rc3 is now available for public testing from Linus Torvalds's Git tree https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git

#LinuxKernel #OpenSource

kernel/git/torvalds/linux.git - Linux kernel source tree