chiprook
← Security
SecurityOctober 8, 2026, 06:00

Four Linux kernel local root flaws disclosed: DirtyAH6, PPPoEject, TUNderflow, DiagSpill

Four Linux kernel local privilege escalation vulnerabilities went public on 18 September 2026: DirtyAH6 (CVE-2026-80844), PPPoEject (CVE-2026-68121), TUNderflow (CVE-2026-81000) and DiagSpill (CVE-2026-74469). Working exploits are public; fixes landed in stable kernels 5.10.270, 5.15.221, 6.1.188, 6.6.157, 6.12.109, 6.18.50 and 7.2.4.

Four Linux kernel local root flaws disclosed: DirtyAH6, PPPoEject, TUNderflow, DiagSpill
#Linux#Proxmox#RaspberryPi#Debian
Read next
Software

Raspberry Pi Desktop release arrives for x86-64 on Debian 13

Software

Raspberry Pi Desktop for PC and Mac adds remote control via Connect

Software

Debian's latest kernel security update fixes 1,313 CVEs

Software

Debian 13 Trixie Kernel Security Update Patches Over 1300 CVEs