News Grower

Independent coverage of AI, startups, and technology.

Ars Technica May 11, 2026 at 22:28 Big Tech Stable Warm

Linux bitten by second severe vulnerability in as many weeks

Production-version patches are coming online and should be installed pronto.

Signal weather

Stable

The story has moved beyond the first headline and now acts as a reliable context anchor.

By Dan Goodin Original source
Linux bitten by second severe vulnerability in as many weeks

Linux users have been bitten by yet another vulnerability that gives containers and untrusted users the ability to gain root access, marking the second time in as many weeks that a severe threat has caught defenders off guard. The threat, known as Dirty Frag, allows low-privilege users, including those using virtual machines, to gain root control of servers. Attacks are particularly suitable in shared environments, where a server is used by multiple parties. Hackers can also gain root as long as they have access to a separate exploit that gives a toehold into a machine. Exploit code was leaked online three days ago and works reliably across virtually all Linux distributions. Microsoft has said it has spotted signs that hackers are experimenting with Dirty Frag in the wild. Immediate and significant threat The leaked exploit is deterministic, meaning it works precisely the same way each time it’s run and across different Linux distributions. It causes no crashes, making it stealthy to run. A vulnerability known as Copy Fail, disclosed last week with no patches available to end users, possesses the same characteristics. Read full article Comments

Stay on the signal

Follow Linux bitten by second severe vulnerability in as many weeks

Follow this story beyond a single article: new follow-ups, adjacent sources, and the evolving storyline.

We send a confirmation link first, then only meaningful digests.

Story map

Understand this topic fast

A quick entry into the story: why it matters now, who is involved, and where to go next for context.

Why it matters now

This story is still moving and pulling follow-up coverage.
There are already 6 connected articles in the same storyline to continue from here.
The story keeps orbiting around Ars Technica, Bitten, and Installed, so the entity pages are the fastest way to build context.
Ars Technica already has 4 follow-up stories on the same theme.

Topic constellation

Open the live map for this story

See which entities, story threads, sources, and follow-up articles shape this story right now.

Click nodes to continue

Entity Cluster Article Hub Source

Story timeline

Continue with this story

A short sequence of events and follow-up stories to understand the arc quickly.

Jul 3, 2026 at 12:00 Ars Technica

Inside the Luddite festival harnessing Gen Z’s rage against Big Tech

New York City’s Summer of Ludd festival is teaching people how to live offline.

Jul 3, 2026 at 11:30 Ars Technica

Despite the darkness, I still see signs of hope in America

It's difficult to pinpoint the moment in my life where America started to lose the plot.

Jul 3, 2026 at 11:15 Ars Technica

Visiting the stars (and planets, and telescopes) in VR

Walkthrough experience includes visits to stars, exoplanets, and observatories.

Jul 3, 2026 at 11:03 Ars Technica

Wing Commander IV and the FMV future that never quite was

C:\ArsGames takes a look at the time Chris Roberts more or less made a whole movie.

Jul 2, 2026 at 19:38 Ars Technica

Newly discovered PamStealer isn't your typical macOS malware

The discovery underscores the increased effort being poured into Mac infostealers.

May 11, 2026 at 22:28 Ars Technica

Linux bitten by second severe vulnerability in as many weeks

Production-version patches are coming online and should be installed pronto.

How reliable this looks

Signal and trust for Ars Technica

This source works at a rapid pace: 100% of recent stories land in the hot window, and 0% carry visible search signal.

Trusted

Reliability

92

Freshness

100

Sources in storyline

1

Related articles

More stories that share tags, source, or category context.

More from Ars Technica

Fresh reporting and follow-up coverage from the same newsroom.

Open source page