The "Dirty Frag" threat is a local privilege escalation attack chaining two Linux kernel zero-day vulnerabilities, CVE-2024-3284 and CVE-2024-3500, which allow writing to unauthorized kernel caches without causing system crashes or requiring special permissions. The article states these vulnerabilities are actively exploited, but it does not provide CVSS scores, specific affected version ranges, fixed versions, or workarounds.
Hak5 -- Cyber Security Education, Inspiration, News & Community since 2005: -----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆ Our Site → https://www.hak5.org Shop → http://hakshop.myshopify.com/ Community → https://www.hak5.org/community Subscribe → https://www.youtube.com/user/Hak5Darren?sub_confirmation=1 Support → https://www.patreon.com/threatwire Contact Us → http://www.twitter.com/hak5 -----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆ ____________________________________________ Founded in 2005, Hak5's mission is to advance the InfoSec industry. We do this through our award winning educational podcasts, leading pentest gear, and inclusive community – where all hackers belong.