Skip to content
Public Exploits for Four Critical Linux Kernel Flaws Released

Public Exploits for Four Critical Linux Kernel Flaws Released

First seen 19 Sep 2026, 10:17 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 19, 2026 at 12:31 UTC

Four vulnerabilities in the Linux kernel, named DirtyAH6, TUNderflow, PPPoEject, and DiagSpill, have been publicly disclosed, allowing local users to escalate privileges to root. These flaws, tracked as CVE-2026-80844, CVE-2026-81000, CVE-2026-68121, and CVE-2026-74469, were discovered by researcher Asim Manizada and reported to the Linux kernel security team in mid-July 2026. Working proof-of-concept exploits were published on September 18, 2026, following a coordinated disclosure process. While kernel maintainers have patched these vulnerabilities, systems running outdated kernels remain at risk. The vulnerabilities primarily affect Linux networking components and could potentially allow attackers to escape containers or execute code remotely under specific conditions. Security teams are urged to apply patches immediately to mitigate risks. No real-world exploitation has been reported yet, but the availability of exploit code increases the threat landscape significantly.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-08-10
CVE-2026-68121 published
The PPPoEject vulnerability was disclosed, affecting Linux kernel networking components.
Thehackernews
2026-08-15
CVE-2026-74469 published
The DiagSpill vulnerability was disclosed, allowing local privilege escalation.
Thehackernews
2026-09-04
CVE-2026-80844 published
The DirtyAH6 vulnerability was disclosed, enabling root access for local users.
Thehackernews
2026-09-11
CVE-2026-81000 published
The TUNderflow vulnerability was disclosed, affecting Linux kernel networking stack.
Thehackernews
2026-09-18
Public exploits released
Researcher Asim Manizada published working exploit code for the four vulnerabilities.
Linkedin
2026-09-19
Security teams urged to patch
Organizations are advised to update their Linux kernels to mitigate risks from the disclosed exploits.
Linkedin

More articles in this cluster (3)

Following this threat?

Track CVE-2026-68121 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed