Four Linux kernel local privilege escalation vulnerabilities were publicly disclosed on September 18-19, 2026, with working exploit code released by researcher Asim Manizada (CVE-2026-80844, CVE-2026-81000, CVE-2026-68121, CVE-2026-74469). CISA additionally listed three other Linux kernel flaws as actively exploited in the wild.
6 reportsother
Claim audit
No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.
It's Friday, and we have 4 more local privilege escalation vulnerabilities disclosed for the Linux kernel: - DirtyAH6 (CVE-2026-80844) - TUNderflow (CVE-2026-81000) - PPPoEject (CVE-2026-68121) - DiagSpill (CVE-2026-74469) "The underlying bugs have been around for 10-21 years. The first three LPEs require either unprivileged user namespaces or specific CAPs; DiagSpill does not." https://www. openw
Ouep, vendredi vuln assisté is back : le kernel Linux, toujours la cible préférée du branding CVE 🐧 DirtyAH6 (CVE-2026-80844), TUNderflow (CVE-2026-81000), PPPoEject (CVE-2026-68121) et DiagSpill (CVE-2026-74469) permettent, dans les configurations adaptées, à un utilisateur local non privilégié d'obtenir root. Bugs présents dans le kernel depuis 10 à 21 ans. Risque pas uniforme : les trois premi
Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. # LinuxSecurity # PrivilegeEscalation # KernelSecurity https:// cyberworldops.eu/en/four-publi c-linux-kernel-exploits-put-unpa
Working exploit code is publicly available for four recently patched Linux kernel vulnerabilities that can allow a local user to escalate privileges to root, the highest access level on a machine. The flaws, named DirtyAH6, TUNderflow, PPPoEject and DiagSpill, are tracked as CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469 [thehackernews.com#1][cybersecuritynews.com#1]. Up-to-date