<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[[related]chez AlmaLinux]]></title><description><![CDATA[<p>[related]<br />chez AlmaLinux</p><p>"Dirty Frag (CVE-2026-43284) vulnerability fix is ready for testing"<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://almalinux.org/blog/2026-05-07-dirty-frag/" rel="nofollow noopener"><span>https://</span><span>almalinux.org/blog/2026-05-07-</span><span>dirty-frag/</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/fa016fe1-5d56-41ea-887d-1bf6c95ad5bc/related-chez-almalinux</link><generator>RSS for Node</generator><lastBuildDate>Fri, 05 Jun 2026 20:39:36 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/fa016fe1-5d56-41ea-887d-1bf6c95ad5bc.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 08 May 2026 10:02:01 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 17:05:55 GMT]]></title><description><![CDATA[<p>et voilà il a reçu son nom de code CVE-2026-46300</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116568355993020261</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116568355993020261</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Wed, 13 May 2026 17:05:55 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 16:45:33 GMT]]></title><description><![CDATA[<p><span><a href="/user/bortzmeyer%40mastodon.gougere.fr" rel="nofollow noopener">@<span>bortzmeyer</span></a></span>     Effectivement sur Ubuntu 24.04 kernel 6.8 non patché + AppArmor désactivé = </p><p>192/192 bytes <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/2705.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--white_check_mark" style="height:23px;width:auto;vertical-align:middle" title="✅" alt="✅" /> <code>whoami</code> → root <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f389.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--tada" style="height:23px;width:auto;vertical-align:middle" title="🎉" alt="🎉" /></p><p>Exploit confirmé. </p><p>AppArmor tient la barrière, ne le désactivez pas <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f609.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--wink" style="height:23px;width:auto;vertical-align:middle" title="😉" alt="😉" /></p><p><a href="https://infosec.exchange/tags/fragnesia" rel="tag">#<span>fragnesia</span></a> <a href="https://infosec.exchange/tags/linux" rel="tag">#<span>linux</span></a> <a href="https://infosec.exchange/tags/lpe" rel="tag">#<span>lpe</span></a></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116568275879313685</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116568275879313685</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Wed, 13 May 2026 16:45:33 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 14:53:57 GMT]]></title><description><![CDATA[<p><span><a href="/user/decio%40infosec.exchange">@<span>decio</span></a></span> <a href="https://www.bortzmeyer.org/fragnesia.html" rel="nofollow noopener noreferrer"><span>https://www.</span><span>bortzmeyer.org/fragnesia.html</span><span></span></a></p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567837110398879</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567837110398879</guid><dc:creator><![CDATA[bortzmeyer@mastodon.gougere.fr]]></dc:creator><pubDate>Wed, 13 May 2026 14:53:57 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 14:45:44 GMT]]></title><description><![CDATA[<p><span><a href="/user/bortzmeyer%40mastodon.gougere.fr" rel="nofollow noopener">@<span>bortzmeyer</span></a></span>    sur ma kali same same !</p><p>└─$ grep ESPINTCP /boot/config-$(uname -r)  </p><h1>CONFIG_INET_ESPINTCP is not set</h1><h1>CONFIG_INET6_ESPINTCP is not set</h1><p>(6.8.11-amd64 #1 SMP PREEMPT_DYNAMIC Kali 6.8.11-1kali2 (2024-05-30)) </p><p>c'est explicitement désactivé dans le kernel Kali (et vraisemblablement tout le kernel Debian).</p><p>GG Debian <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f918.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--the_horns" style="height:23px;width:auto;vertical-align:middle" title="🤘" alt="🤘" /> <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f44d.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--+1" style="height:23px;width:auto;vertical-align:middle" title="👍" alt="👍" /> </p><p>Cela semble donc Ubuntu-centrique...</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567804742726991</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567804742726991</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Wed, 13 May 2026 14:45:44 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 14:16:52 GMT]]></title><description><![CDATA[<p><span><a href="/user/decio%40infosec.exchange">@<span>decio</span></a></span> Reste à savoir si le POC peut être modifié pour fonctionner sur Debian, ou bien si c'est une limite plus fondamentale de Fragnesia (qui ne serait pas si universel que ça).</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567691263108829</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567691263108829</guid><dc:creator><![CDATA[bortzmeyer@mastodon.gougere.fr]]></dc:creator><pubDate>Wed, 13 May 2026 14:16:52 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 14:15:43 GMT]]></title><description><![CDATA[<p><span><a href="/user/bortzmeyer%40mastodon.gougere.fr" rel="nofollow noopener">@<span>bortzmeyer</span></a></span>  yep ! <br />XFRM_MSG_NEWSA ack errno=22<br /><br />Donc Debian rejette la configuration XFRM spécifique</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567686747259187</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567686747259187</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Wed, 13 May 2026 14:15:43 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 14:12:12 GMT]]></title><description><![CDATA[<p><span><a href="/user/decio%40infosec.exchange">@<span>decio</span></a></span> C'est pas que chez moi (même message d'erreur) <a href="https://x.com/idratherwork/status/2054500111917470017" rel="nofollow noopener noreferrer"><span>https://</span><span>x.com/idratherwork/status/2054</span><span>500111917470017</span></a></p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567672907869096</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567672907869096</guid><dc:creator><![CDATA[bortzmeyer@mastodon.gougere.fr]]></dc:creator><pubDate>Wed, 13 May 2026 14:12:12 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 13:58:41 GMT]]></title><description><![CDATA[<p><span><a href="/user/decio%40infosec.exchange">@<span>decio</span></a></span> J'ai essayé avec et sans l'autorisation de création des namespaces, pareil.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567619777880852</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567619777880852</guid><dc:creator><![CDATA[bortzmeyer@mastodon.gougere.fr]]></dc:creator><pubDate>Wed, 13 May 2026 13:58:41 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 13:58:17 GMT]]></title><description><![CDATA[<p><span><a href="/user/decio%40infosec.exchange">@<span>decio</span></a></span> Debian 13 (stable) à jour.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567618192192121</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567618192192121</guid><dc:creator><![CDATA[bortzmeyer@mastodon.gougere.fr]]></dc:creator><pubDate>Wed, 13 May 2026 13:58:17 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 13:55:38 GMT]]></title><description><![CDATA[<p><span><a href="/user/bortzmeyer%40mastodon.gougere.fr" rel="nofollow noopener">@<span>bortzmeyer</span></a></span>   Intéressant, tu peux me dire sur quelle distro/version ? <br />Je n'ai pas encore eu le temps de le tester sur mes conteneurs  &amp; Debian/Kali, mais d'après le README pour Ubuntu:  AppArmor restricts unprivileged user namespaces by default.</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567607768164649</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567607768164649</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Wed, 13 May 2026 13:55:38 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 13:44:09 GMT]]></title><description><![CDATA[<p>[related]</p><p>"Fragnesia: Linux Kernel Local Privilege Escalation via ESP-in-TCP"<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://www.wiz.io/blog/fragnesia-linux-kernel-local-privilege-escalation-via-esp-in-tcp" rel="nofollow noopener"><span>https://www.</span><span>wiz.io/blog/fragnesia-linux-ke</span><span>rnel-local-privilege-escalation-via-esp-in-tcp</span></a></p><p><a href="https://infosec.exchange/tags/Fragnesia" rel="tag">#<span>Fragnesia</span></a> <a href="https://infosec.exchange/tags/linux" rel="tag">#<span>linux</span></a></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567562620879463</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567562620879463</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Wed, 13 May 2026 13:44:09 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 13:42:33 GMT]]></title><description><![CDATA[<p><span><a href="/user/decio%40infosec.exchange">@<span>decio</span></a></span> I was not successful with the POC, even with modules allowed.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567556302249672</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.gougere.fr/users/bortzmeyer/statuses/116567556302249672</guid><dc:creator><![CDATA[bortzmeyer@mastodon.gougere.fr]]></dc:creator><pubDate>Wed, 13 May 2026 13:42:33 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 13:16:47 GMT]]></title><description><![CDATA[<p><a href="https://infosec.exchange/tags/Fragnesia" rel="tag">#<span>Fragnesia</span></a> <a href="https://infosec.exchange/tags/Linux" rel="tag">#<span>Linux</span></a> <a href="https://infosec.exchange/tags/Kernel" rel="tag">#<span>Kernel</span></a> <br />"All versions affected by dirtyfrag are affected."<br />"Any versions without this patch: <a href="https://lists.openwall.net/netdev/2026/05/13/79" rel="nofollow noopener"><span>https://</span><span>lists.openwall.net/netdev/2026</span><span>/05/13/79</span></a> , so any Linux kernel before May 13 2026."</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567455019508738</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567455019508738</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Wed, 13 May 2026 13:16:47 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Wed, 13 May 2026 13:12:37 GMT]]></title><description><![CDATA[<p>🤪 <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f525.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--fire" style="height:23px;width:auto;vertical-align:middle" title="🔥" alt="🔥" /> <img class="not-responsive emoji" src="https://media.infosec.exchange/infosec.exchange/custom_emojis/images/000/028/559/original/14cf678a291c4dcc.png" title=":nes_fire:" />  <img class="not-responsive emoji" src="https://media.infosec.exchange/infosec.exchange/custom_emojis/images/000/028/559/original/14cf678a291c4dcc.png" title=":nes_fire:" />  <img class="not-responsive emoji" src="https://media.infosec.exchange/infosec.exchange/custom_emojis/images/000/028/559/original/14cf678a291c4dcc.png" title=":nes_fire:" /> <br />et c'est reparti pour un tour : <a href="https://infosec.exchange/tags/fragnesia" rel="tag">#<span>fragnesia</span></a>  le petit frère de DirtyFrag (même famille ESP/XFRM, même mitigation rmmod esp4 esp6 rxrpc, même page cache qui se fait défoncer, just trust me bro).</p><p>Bonne nouvelle : si t'avais blocklisté les modules « au cas où », t'es OK.</p><p>Mauvaise nouvelle : si t'as "juste" patché DirtyFrag , il te faut le patch Fragnesia aussi.</p><p>"Fragnesia is a universal Linux local privilege escalation exploit, discovered by William Bowling with the V12 team. Fragnesia is a member of the Dirty Frag vulnerability class. "<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://github.com/v12-security/pocs/tree/main/fragnesia" rel="nofollow noopener"><span>https://</span><span>github.com/v12-security/pocs/t</span><span>ree/main/fragnesia</span></a></p><p><a href="https://infosec.exchange/tags/CyberVeille" rel="tag">#<span>CyberVeille</span></a> <a href="https://infosec.exchange/tags/linux" rel="tag">#<span>linux</span></a> <br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f427.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--penguin" style="height:23px;width:auto;vertical-align:middle" title="🐧" alt="🐧" /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f525.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--fire" style="height:23px;width:auto;vertical-align:middle" title="🔥" alt="🔥" /></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567438633136119</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116567438633136119</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Wed, 13 May 2026 13:12:37 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Tue, 12 May 2026 13:15:37 GMT]]></title><description><![CDATA[<p>...pourquoi pas?<br /><br />à grand risque, grande responsabilité<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/2b07.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--arrow_down" style="height:23px;width:auto;vertical-align:middle" title="⬇" alt="⬇" />️ <br />"Linux kernel maintainers pitch emergency killswitch after CopyFail and Dirty Frag chaos"<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://www.theregister.com/oses/2026/05/11/linux-kernel-maintainers-pitch-emergency-killswitch-after-copyfail-and-dirty-frag-chaos/5237801" rel="nofollow noopener"><span>https://www.</span><span>theregister.com/oses/2026/05/1</span><span>1/linux-kernel-maintainers-pitch-emergency-killswitch-after-copyfail-and-dirty-frag-chaos/5237801</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f50d.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--mag" style="height:23px;width:auto;vertical-align:middle" title="🔍" alt="🔍" /> <br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://lore.kernel.org/all/20260507070547.2268452-1-sashal@kernel.org/" rel="nofollow noopener"><span>https://</span><span>lore.kernel.org/all/2026050707</span><span>0547.2268452-1-sashal@kernel.org/</span></a></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116561788079643472</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116561788079643472</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Tue, 12 May 2026 13:15:37 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Sat, 09 May 2026 10:27:14 GMT]]></title><description><![CDATA[<p>Tour d'horizon <a href="https://infosec.exchange/tags/DirtyFrag" rel="tag">#<span>DirtyFrag</span></a> du jour :</p><p>Bien évidemment Microsoft a sauté sur l'occasion avec un article sur une vuln Linux ...because M love Linux<br /><br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://www.microsoft.com/en-us/security/blog/2026/05/08/active-attack-dirty-frag-linux-vulnerability-expands-post-compromise-risk/" rel="nofollow noopener"><span>https://www.</span><span>microsoft.com/en-us/security/b</span><span>log/2026/05/08/active-attack-dirty-frag-linux-vulnerability-expands-post-compromise-risk/</span></a></p><p>L'incontournable FAQ Tenable pour ceux comme moi qui aiment lire les CVE comme un mode d'emploi IKEA<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://www.tenable.com/blog/dirty-frag-cve-2026-43284-cve-2026-43500-frequently-asked-questions-linux-kernel-lpe" rel="nofollow noopener"><span>https://www.</span><span>tenable.com/blog/dirty-frag-cv</span><span>e-2026-43284-cve-2026-43500-frequently-asked-questions-linux-kernel-lpe</span></a></p><p>Red Hat a mis à jour sa page  RHSB-2026-003 avec mitigations et vérifs, en attendant le patch qui arrive "bientôt<img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/2122.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--tm" style="height:23px;width:auto;vertical-align:middle" title="™" alt="™" />" <br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://access.redhat.com/security/vulnerabilities/RHSB-2026-003" rel="nofollow noopener"><span>https://</span><span>access.redhat.com/security/vul</span><span>nerabilities/RHSB-2026-003</span></a></p><p>Et chez moi sur ma belle et adorée Debian ? Les canaux security sont patchés pour bullseye, bookworm et trixie. <br />Bien joué !<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://security-tracker.debian.org/tracker/CVE-2026-43284" rel="nofollow noopener"><span>https://</span><span>security-tracker.debian.org/tr</span><span>acker/CVE-2026-43284</span></a></p><p>Cela dit, effectivement avec l'IA qui accélère la découverte + embargos qui tiennent plus = fenêtre d'exposition qui va pas aller en rétrécissant. Les mainteneurs vont devoir trouver de nouveaux tricks. Live-patch, micro-patch, pipelines accélérés... à suivre.</p><p><a href="https://infosec.exchange/tags/CyberVeille" rel="tag">#<span>CyberVeille</span></a></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116544139092238924</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116544139092238924</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Sat, 09 May 2026 10:27:14 GMT</pubDate></item><item><title><![CDATA[Reply to [related]chez AlmaLinux on Fri, 08 May 2026 10:16:03 GMT]]></title><description><![CDATA[<p>Nouveaux kernels stables : 7.0.5 / 6.18.28 / 6.12.87 / 6.6.138</p><p>Ils embarquent un fix <strong>partiel</strong> pour <a href="https://infosec.exchange/tags/DirtyFrag" rel="tag">#<span>DirtyFrag</span></a> (CVE-2026-43284) et Copy Fail 2.</p><p>Partiel, car Greg Kroah-Hartman a confirmé qu'un second patch est encore en développement et n'a pas encore été mergé. </p><p>La mitigation par blacklist des modules reste donc recommandée en attendant.<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f447.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_down" style="height:23px;width:auto;vertical-align:middle" title="👇" alt="👇" /> <br /><a href="https://lwn.net/Articles/1071775/" rel="nofollow noopener"><span>https://</span><span>lwn.net/Articles/1071775/</span><span></span></a></p><p><a href="https://infosec.exchange/tags/Linux" rel="tag">#<span>Linux</span></a> <a href="https://infosec.exchange/tags/Kernel" rel="tag">#<span>Kernel</span></a> <a href="https://infosec.exchange/tags/CyberVeille" rel="tag">#<span>CyberVeille</span></a></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116538432803616915</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/decio/statuses/116538432803616915</guid><dc:creator><![CDATA[decio@infosec.exchange]]></dc:creator><pubDate>Fri, 08 May 2026 10:16:03 GMT</pubDate></item></channel></rss>