Fragnesia: new Linux kernel privilege escalation with published exploit
A new local privilege escalation vulnerability in Linux, named Fragnesia, has been published. Tracked as CVE-2026-46300, it resembles the recently disclosed Dirty Frag and Copy Fail issues in allowing a local user to escalate to root. Working exploit code has been published on GitHub.
Patches were added to the Linux kernel on 13 May 2026, though there is typically a delay before distributions integrate and ship updated kernels to users.
What this means for your organisation
This is the third similar Linux issue in a short period, and the pattern matters more than the individual flaw: the kernel is seeing a steady stream of privilege escalations with public exploit code. Organisations that treat each one as a one-off will always be behind. What is needed is a standing process and an agreed deadline, so the gap between kernel fix and distribution release is managed rather than forgotten.
Berigo recommends
- Track when your distribution ships the fixed kernel, and plan server reboots ahead of time.
- Set a fixed maximum deadline for kernel patching in your vulnerability process, and report deviations.
- Limit who holds shell access on Linux servers, since all these vulnerabilities depend on local access.
- Consider live kernel patching where timely reboots are difficult to arrange.
Source
Security that is understood, governed and works.
Let us help you turn security into an advantage, not a cost. Get in touch for a no-obligation conversation about where your organisation stands and what to prioritise first.
Get in touch