A new unpatched local privilege escalation vulnerability has been discovered in the Linux kernel. Called Dirty Frag, the flaw is considered a successor to Copy Fail (CVE-2026-31431, CVSS score: 7.8), another recent LPE vulnerability affecting the Linux kernel that is currently being exploited in active attacks. The vulnerability has been reported to Linux kernel maintainers.
