New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits Android
A critical Linux kernel vulnerability known as "Bad Epoll" or "DirtyClone" allows unprivileged users to gain root access on servers and Android devices.
📍 Aftermath
The "Bad Epoll" and "DirtyClone" Linux kernel vulnerabilities allowed unprivileged users to gain root access on Android devices and major distributions. Canonical confirmed that fixes for the flaw were released for Ubuntu.
Epilogue added 43d ago, after coverage quieted.
How fast it spread
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
The story so far
A new 0-day vulnerability in the Linux kernel, referred to as "Bad Epoll" and "DirtyClone" (CVE-2026-43503), enables local privilege escalation. The flaw allows unprivileged users to obtain root access on major distributions and Android devices. One report describes it as a kernel race bug.
Coverage from The Hacker News, SecurityWeek, and Rescana emphasizes the critical nature of the flaw and its impact on Android and Linux servers. Tech Times reports a 99% root exploit rate and notes that the bug bypassed AI auditing. Other reports from SQ Magazine identify the issue as a pedit COW bug.
Attention is now on patching and mitigation, with Linuxiac reporting that Canonical has confirmed fixes for Ubuntu users.
Synthesized by Newsylist from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 44d ago.
Sources (8)
- New "Bad Epoll" 0-Day Vulnerability Allows Root Access on Linux Servers and Android Devices CyberSecurityNews · 46d ago
- Fragnesia Korben · 46d ago
- Bad Epoll: Kernel Race Bug Beats AI Auditing, Hits 99% Root Exploit Rate Tech Times · 46d ago
- Critical Linux pedit COW Bug Gives Hackers Instant Root Access SQ Magazine · 46d ago
- Canonical Confirms Ubuntu Fixes for DirtyClone Linux Kernel Flaw Linuxiac · 46d ago
- DirtyClone (CVE-2026-43503): Critical Linux Kernel Vulnerability Enables Local Privilege Escalation to Root on Major Distributions Rescana · 46d ago
- ‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access SecurityWeek · 46d ago
- New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits Android The Hacker News · 46d ago broke it first
The obvious questions
What is the CVE identifier for this vulnerability?
The vulnerability is identified as CVE-2026-43503.
Which operating systems are affected by this flaw?
The flaw affects Linux servers, major distributions, and Android devices.
Are there any available fixes?
Canonical has confirmed that fixes are available for Ubuntu.
People, places & organizations
Topics
Related trends
Google unveils Pixel 11 lineup, new AirTag rival, and Gemini features at Made by Google 2026
Google’s August 12 launch bundles a new Pixel phone, smartwatch and a $29 AirTag rival, thrusting Gemini AI into its hardware line‑up.
White House AI Guidelines Exempt U.S. Open Models From Government Review
The White House prepares a new framework for artificial intelligence security reviews with exemptions for open models.
Ariana Grande Sues Over Yearslong Hacking Campaign Targeting Inner Circle
Ariana Grande has filed a lawsuit against alleged hackers following a yearslong campaign targeting her inner circle and leaking unreleased music.
Microsoft launches its first cybersecurity model, plus a new agentic cybersecurity system
Microsoft is challenging industry leaders with a new in-house cybersecurity AI model and an agentic system designed to lower costs.
Microsoft Unveils A.I. Cybersecurity Tools
Microsoft is entering the "agentic era" of security with the launch of its first homegrown AI model and new cybersecurity tools.
Angelina Jolie and Robert De Niro at centre of contact detail ‘leak’
A data breach at the Tribeca Film Festival has resulted in the exposure of private contact information for high-profile Hollywood figures.