Resource management error in Linux kernel - CVE-2026-43500

 

Resource management error in Linux kernel - CVE-2026-43500

Published: May 8, 2026


Vulnerability identifier: #VU130759
CSH Severity: High
CVSSv4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P/U:Amber
CVE-ID: CVE-2026-43500
CWE-ID: CWE-399
Exploitation vector: Local access
Exploit availability: Public exploit is available
Vulnerable software:
Linux kernel
Software vendor:
Linux Foundation

Description

The vulnerability allows a local user to escalate privileges on the system.

The RxRPC Page-Cache Write vulnerability exists due to improper management of internal resources. A local user can execute arbitrary code with root privileges.

Note, this vulnerability is one of two issues described as Dirty Frag.


Remediation

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.

External links