Fragnesia: New Linux Kernel Vulnerability Grants Root Access, Third in Two Weeks
A new local privilege escalation (LPE) vulnerability, dubbed **Fragnesia**, has been discovered in the Linux kernel's XFRM ESP-in-TCP subsystem. This flaw, tracked as **CVE-2026-46300**, allows unprivileged local attackers to gain root access, marking the third such vulnerability identified in the kernel in a short period.

Details have emerged about **Fragnesia**, a new variant of the recent Dirty Frag Linux local privilege escalation (LPE) vulnerability that allows local attackers to gain root access, making it the third such bug to be identified in the kernel within a span of two weeks.
## Fragnesia: The Details
The security vulnerability is tracked as **CVE-2026-46300** (CVSS score: 7.8) and is rooted in the Linux kernel's XFRM ESP-in-TCP subsystem. It was discovered by researcher William Bowling of **Zellic** and the **V12** security team.
"The vulnerability allows unprivileged local attackers to modify read-only file contents in the kernel page cache and achieve root privileges through a deterministic page-cache corruption primitive," **Google**-owned **Wiz** said.
## Vendor Advisories
Advisories have been released by multiple Linux distributions:
* [AlmaLinux](https://almalinux.org/blog/2026-05-13-fragnesia-cve-2026-46300/)
* [Amazon Linux](https://aws.amazon.com/security/security-bulletins/rss/2026-029-aws/)
* [CloudLinux](https://blog.cloudlinux.com/fragnesia-mitigation-and-kernel-update)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2026-46300)
* [Gentoo](https://bugs.gentoo.org/show_bug.cgi?id=CVE-2026-46300)
* [Red Hat Enterprise Linux](https://access.redhat.com/security/cve/cve-2026-46300)
* [SUSE](https://www.suse.com/security/cve/CVE-2026-46300.html)
* [Ubuntu](https://ubuntu.com/security/CVE-2026-46300)
**V12** stated, "This is a separate bug in the ESP/XFRM from Dirty Frag which has received its own patch. However, it is in the same surface and the mitigation is the same as for Dirty Frag. It abuses a logic bug in the Linux XFRM ESP-in-TCP subsystem to achieve arbitrary byte writes into the kernel page cache of read-only files, without requiring any race condition."
## Similarities to Copy Fail and Dirty Frag
Fragnesia is similar to Copy Fail and Dirty Frag (aka Copy Fail 2) in that it immediately yields root on all major distributions by achieving a memory write primitive in the kernel and corrupting the page cache memory of the /usr/bin/su binary. A proof-of-concept (PoC) exploit has been released by **V12**.

## Mitigation Strategies
**CloudLinux** maintainers advise, "Customers who have already applied the Dirty Frag mitigation need no further action until patched kernels are released." **Red Hat** said it's performing an assessment to confirm if existing mitigations extend to **CVE-2026-46300**.
**Wiz** also noted that **AppArmor** restrictions on unprivileged user namespaces may serve as a partial mitigation, requiring additional bypasses for successful exploitation. However, unlike Dirty Frag, no host-level privileges are required.
**Microsoft** urges, "A patch is available, and while no in-the-wild exploitation has been observed at this time, we urge users and organizations to apply the patch as soon as possible by running update tools. If patching is not possible at this point, consider applying the same mitigations for Dirty Frag."
This includes disabling esp4, esp6, and related xfrm/IPsec functionality, restricting unnecessary local shell access, hardening containerized workloads, and increasing monitoring for abnormal privilege escalation activity.
## Zero-Day LPE Exploit on Cybercrime Forums
The development comes as a threat actor named "berz0k" has been observed advertising on cybercrime forums a zero-day Linux LPE exploit for $170,000, claiming it works on multiple major Linux distributions.
"The threat actor claims the vulnerability is TOCTOU-based (Time-of-Check Time-of-Use), capable of stable local privilege escalation without causing system crashes, and leverages a shared object (.so) payload dropped into the /tmp directory," **ThreatMon** posted on X.