The most severe Linux threat to surface in years catches the world flat-footed



Publicly released exploit code for an effectively unpatched vulnerability that gives root access to virtually all releases of Linux is setting off alarm bells as defenders scramble to ward off severe compromises inside data centers and on personal devices.

The vulnerability and exploit code that exploits it were released Wednesday evening by researchers from security firm Theori, five weeks after privately disclosing it to the Linux kernel security team. The team patched the vulnerability in versions 7.0, 6.19.12, 6.18.12, 6.12.85, 6.6.137, 6.1.170, 5.15.204, and 5.10.254) but few of the Linux distributions had incorporated those fixes at the time the exploit was released.

A single script hacks all distros

The critical flaw, tracked as CVE-2026-31431 and the name CopyFail, is a local privilege escalation, a vulnerability class that allows unprivileged users to elevate themselves to administrators. CopyFail is particularly severe because it can be exploited with a single piece of exploit code—released in Wednesday’s disclosure—that works across all vulnerable distributions with no modification. With that, an attacker can, among other things, hack multi-tenant systems, break out of containers based on Kubernetes or other frameworks, and create malicious pull requests that pipe the exploit code through CI/CD work flows.

“‘Local privilege escalation’ sounds dry, so let me unpack it,” researcher Jorijn Schrijvershof wrote Thursday. “It means: an attacker who already has some way to run code on the machine, even as the most boring unprivileged user, can promote themselves to root. From there they can read every file, install backdoors, watch every process, and pivot to other systems.”

Schrijvershof added that the same Python script Theori released works reliably for Ubuntu 22.04, Amazon Linux 2023, SUSE 15.6, and Debian 12. The researcher continued:



Source link

  • Related Posts

    Anbernic’s Swiveling Retro Handheld Will Be Available May 11

    Anbernic’s unique retro handheld console, the RG Rotate, will be available to order beginning on May 11. The portable machine includes a 1:1 swivel…

    The New OnePlus Pad 4 Is Thin and Fast, but Not Yet in the US

    OnePlus launched the Pad 4 on Thursday, the latest iteration of the company’s Pad series, a tablet with a good screen size, a big battery and a fast processor — all…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    New results on AI mental health therapists

    New results on AI mental health therapists

    Statistics Canada says real GDP rose 0.2 per cent in February

    Statistics Canada says real GDP rose 0.2 per cent in February

    Man charged with attempted murder after stabbings of Jewish men in London

    Man charged with attempted murder after stabbings of Jewish men in London

    Anbernic’s Swiveling Retro Handheld Will Be Available May 11

    Anbernic’s Swiveling Retro Handheld Will Be Available May 11

    Is Nuggets’ title window closed? Nikola Jokić era is on life support in Denver

    Is Nuggets’ title window closed? Nikola Jokić era is on life support in Denver

    Frieren: Beyond Journey’s End Collector’s Edition Blu-ray Set Gets a Massive Price Drop on Amazon

    Frieren: Beyond Journey’s End Collector’s Edition Blu-ray Set Gets a Massive Price Drop on Amazon