New Dirty Frag Linux Bug Emerges
The vulnerability class is a potent new iteration of kernel bugs that corrupt the page cache of read-only files and is a follow-on to the recently disclosed Copy Fail Linux LPE bug.
All topics
The vulnerability class is a potent new iteration of kernel bugs that corrupt the page cache of read-only files and is a follow-on to the recently disclosed Copy Fail Linux LPE bug.
PAN released an advisory about the vulnerability on Tuesday and said it will release a patch in an upcoming version of PAN-OS.
Deniss Zolotarjovs, 35, of Moscow, Russia, was a member of a ransomware group called Karakurt, which was led by the former operators of Conti.
The vulnerability (CVE-2026-23918) only affects version 2.4.66 and the Apache Software Foundation has released a fix for the bug in version 2.4.67.
The latest branded bug is a slick, portable LPE in many Linux kernels going back to 2017.
cPanel published a terse advisory saying that there was an issue with “session loading and saving” and that it affects every version of the software.