A security researcher published working exploit code for four Linux kernel flaws—DirtyAH6, TUNderflow, PPPoEject, and DiagSpill—that can let a local attacker gain root on unpatched systems. The bugs have already been fixed in the Linux kernel, but older kernels remain at risk until they are updated, especially on systems using unprivileged user namespaces or SCTP features. #DirtyAH6 #TUNderflow #PPPoEject #DiagSpill
Keypoints
- Working exploit code has been released for four Linux kernel privilege escalation flaws.
- The affected bugs are DirtyAH6, TUNderflow, PPPoEject, and DiagSpill.
- Up-to-date Linux kernels are already patched and not affected.
- Unprivileged user namespaces expose three of the flaws to ordinary users.
- DiagSpill can be triggered without special privileges if SCTP is enabled.
Read More: https://thehackernews.com/2026/09/public-exploits-released-for-four-linux.html