News: 0001632867

  ARM Give a man a fire and he's warm for a day, but set fire to him and he's warm for the rest of his life (Terry Pratchett, Jingo)

Linux 7.0.6 Released To Finish Mitigating the Dirty Frag Vulnerability

([Linux Kernel] 9 Minutes Ago Linux 7.0.6)


Linux 7.0.6 is out as stable this morning to finish mitigating the Dirty Frag vulnerability that was made public last week.

The embargo was broken on Dirty Frag last week ahead of schedule and thus proper fixes for the Linux kernel were yet in place for taking care of this local privilege escalation issue. [1]Dirty Frag makes it easy to go root on all Linux distributions but thankfully Linux 7.0.6 is now out to fully resolve Dirty Frag.

The lone patch making up Linux 7.0.6 is " rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present " for fixing an RXRPC issue from 2019.

In addition to Linux 7.0.6 stable, the Linux 6.18.29 LTS kernel was also released today with the sole change being this same patch from Hyunwoo Kim for resolving Dirty Frag.

More background information on Dirty Frag and some temporary workarounds for bypassing this vulnerability can be found via the Dirty Frag [2]GitHub repository .



[1] https://www.phoronix.com/news/Dirty-Frag-Linux

[2] https://github.com/V4bel/dirtyfrag



--
-- uunet!sugar!karl | "We've been following your progress with considerable
-- karl@sugar.uu.net | interest, not to say contempt." -- Zaphod Beeblebrox IV
-- Usenet BBS (713) 438-5018



th-th-th-th-That's all, folks!

----------- cut here, don't forget to strip junk at the end, too -------------
"Psychoanalysis?? I thought this was a nude rap session!!!"
-- Zippy