Multiple Linux kernel privilege escalation flaws disclosed and exploited

Four Linux kernel local privilege escalation vulnerabilities were publicly disclosed on September 18-19, 2026, with working exploit code released by researcher Asim Manizada (CVE-2026-80844, CVE-2026-81000, CVE-2026-68121, CVE-2026-74469). CISA additionally listed three other Linux kernel flaws as actively exploited in the wild.

6 reportsother

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

It's Friday, and we have 4 more local privilege escalation vulnerabilities disclosed for the Linux kernel: - DirtyAH6 (CVE-2026-80844) - TUNderflow (CVE-2026-81000) - PPPoEject (CVE-2026-68121) - Diag

mastodon:infosec-exchangeother11d ago kagi ↗

It's Friday, and we have 4 more local privilege escalation vulnerabilities disclosed for the Linux kernel: - DirtyAH6 (CVE-2026-80844) - TUNderflow (CVE-2026-81000) - PPPoEject (CVE-2026-68121) - DiagSpill (CVE-2026-74469) "The underlying bugs have been around for 10-21 years. The first three LPEs require either unprivileged user namespaces or specific CAPs; DiagSpill does not." https://www. openw

Ouep, vendredi vuln assisté is back : le kernel Linux, toujours la cible préférée du branding CVE 🐧 DirtyAH6 (CVE-2026-80844), TUNderflow (CVE-2026-81000), PPPoEject (CVE-2026-68121) et DiagSpill (CV

mastodon:infosec-exchangeother11d ago kagi ↗

Ouep, vendredi vuln assisté is back : le kernel Linux, toujours la cible préférée du branding CVE 🐧 DirtyAH6 (CVE-2026-80844), TUNderflow (CVE-2026-81000), PPPoEject (CVE-2026-68121) et DiagSpill (CVE-2026-74469) permettent, dans les configurations adaptées, à un utilisateur local non privilégié d'obtenir root. Bugs présents dans le kernel depuis 10 à 21 ans. Risque pas uniforme : les trois premi

Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier fo

mastodon:infosec-exchangeother10d ago kagi ↗

Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. # LinuxSecurity # PrivilegeEscalation # KernelSecurity https:// cyberworldops.eu/en/four-publi c-linux-kernel-exploits-put-unpa

Public exploits emerge for Linux kernel flaws enabling local root

kite:cybersecurityother10d ago kagi ↗

Working exploit code is publicly available for four recently patched Linux kernel vulnerabilities that can allow a local user to escalate privileges to root, the highest access level on a machine. The flaws, named DirtyAH6, TUNderflow, PPPoEject and DiagSpill, are tracked as CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469 [thehackernews.com#1][cybersecuritynews.com#1]. Up-to-date

🤖 CISA added 3 Linux kernel flaws to KEV over in-the-wild exploitation: CVE-2025-39682 (CVSS 9.8, TLS receive path, memory disclosure/DoS), CVE-2026-53266 (CVSS 8.8, ebtables SNAT OOB write, LPE), CV

mastodon:infosec-exchangeother10d ago kagi ↗

🤖 CISA added 3 Linux kernel flaws to KEV over in-the-wild exploitation: CVE-2025-39682 (CVSS 9.8, TLS receive path, memory disclosure/DoS), CVE-2026-53266 (CVSS 8.8, ebtables SNAT OOB write, LPE), CVE-2025-39964 (CVSS 7.8, AF_ALG race). Patch kernels now. 🔗 https:// thehackernews.com/2026/09/cisa -flags-three-linux-kernel.html # CVE # Linux # CyberSec

🤖 CISA adds 3 Linux kernel flaws to KEV over active exploitation: CVE-2025-39682 (CVSS 9.8, TLS receive-path memory disclosure/DoS), CVE-2026-53266 (8.8, ebtables SNAT ARP OOB write → LPE), CVE-2025-

mastodon:infosec-exchangeother10d ago kagi ↗

🤖 CISA adds 3 Linux kernel flaws to KEV over active exploitation: CVE-2025-39682 (CVSS 9.8, TLS receive-path memory disclosure/DoS), CVE-2026-53266 (8.8, ebtables SNAT ARP OOB write → LPE), CVE-2025-39964 (7.8, AF_ALG race). Patch kernels. 🔗 https:// thehackernews.com/2026/09/cisa -flags-three-linux-kernel.html # CVE # Linux # CyberSec # InfoSec