Skip to content
Critical Use-After-Free Exploit in Linux Kernel Discovered

Critical Use-After-Free Exploit in Linux Kernel Discovered

First seen 26 Sep 2026, 13:24 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •September 27, 2026 at 16:34 UTC
  • •A critical use-after-free vulnerability in Linux Kernel 5.10 allows root access.
  • •The exploit requires specific commands and a reboot for persistence.
  • •Proof-of-concept code is publicly available, increasing the risk of exploitation.

A critical use-after-free vulnerability has been identified in the Linux Kernel, specifically affecting version 5.10. The exploit allows attackers to gain root privileges (uid=0) on affected devices. The attack method involves a sequence of commands that manipulate memory addresses, enabling unauthorized access. This vulnerability impacts devices running Android 12 and similar Linux distributions. The exploit is designed to function with a specific kernel load and requires a reboot for persistence. Security researchers have provided detailed instructions for exploiting this vulnerability, indicating a high risk for users who do not apply mitigations. The exploit is currently available in proof-of-concept form, raising concerns about potential active exploitation in the wild. Affected users are advised to monitor for updates and apply security patches as they become available.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Timeline

2026-09-26
Exploit for Linux Kernel vulnerability published
Two separate exploits for a use-after-free vulnerability in Linux Kernel 5.10 were published, detailing methods for gaining root access.
Sploitus
2026-09-26
Second exploit for same vulnerability published
A second exploit for the same use-after-free vulnerability was also released, further confirming the risk.
Sploitus

More articles in this cluster (2)