惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

N
Netflix TechBlog - Medium
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
有赞技术团队
有赞技术团队
阮一峰的网络日志
阮一峰的网络日志
WordPress大学
WordPress大学
V
Visual Studio Blog
博客园_首页
大猫的无限游戏
大猫的无限游戏
Y
Y Combinator Blog
博客园 - Franky
Vercel News
Vercel News
H
Hackread – Cybersecurity News, Data Breaches, AI and More
U
Unit 42
IT之家
IT之家
Last Week in AI
Last Week in AI
腾讯CDC
Martin Fowler
Martin Fowler
S
SegmentFault 最新的问题
量子位
I
InfoQ
T
The Blog of Author Tim Ferriss
The Cloudflare Blog
MyScale Blog
MyScale Blog
C
Check Point Blog

System76 Blog RSS Feed

Meet System76's new GPU-focused Linux workstation, the Thelio Mira AI System76 goes to college – a case study COSMIC DE’s First Seven Months Welcome to the gamer’s dream machine 18-hour battery? Panther Lake chip? 100% faster gaming graphics? Say hello to Lemur Pro COSMIC Hits Keep Coming With New System Monitor Colorado and California Exempt Open Source from Age Attestation System76 Redefines Linux Platform with Redesign of Thelio Desktop and Workstation Introducing the New Thelio Mira High Performance Desktop System76 on Age Verification Laws Launch Keyboard tips to make you more productive The Pop!_OS 24.04 LTS Upgrade is here! The Latest Updates to COSMIC Epoch 1 COSMIC Epoch 2 and 3 Roadmap System76 Blog
Linux Zero-Day Dirty Frag and Copy Fail Vulnerability Fix...
2026-05-09 · via System76 Blog RSS Feed

Linux Zero-Day Dirty Frag and Copy Fail Vulnerability Fixes Released

Pop!_OS 22.04 LTS and Pop!_OS 24.04 LTS kernels have been patched for Dirty Frag and Copy Fail zero-day local privilege escalation vulnerabilities. Install updates to apply the fixes.

Dirty Frag (CVE-2026-43284)

The affected rxrpc, esp4, and esp6 kernel modules have been disabled in the Pop!_OS kernel update. Once rxrpc kernel patches are approved upstream, new kernels will be released with the modules re-enabled.

espr4 and esp6 kernel modules were patched and are safe to re-enable. We are keeping them disabled to see if upstream's backports find other places to make changes.


The Alfred File System (AFS) uses the rxrpc module. esp4 and esp6 are used by some VPN implementations like StrongSwan. If you require these modules, delete the file located at /etc/modprobe.d/pop-default-settings-dirty-frag.conf and run the command

sudo update-initramfs -u -k all

Copy Fail (CVE-2026-31431)

Copy Fail patched kernels were released on Pop!_OS 22.04 LTS, Pop!_OS 24.04 LTS on April 30th.