https://copy.fail/
An unprivileged local user can write 4 controlled bytes into the page cache of any readable file on a Linux system, and use that to gain root.
100% reliable (if vulnerable). Affects kernels since 2017.
PoC: https://github.com/theori-io/copy-fail-CVE-2026-31431
(does not affect Ubuntu 26.04)
https://copy.fail/
100% reliable (if vulnerable). Affects kernels since 2017.
PoC: https://github.com/theori-io/copy-fail-CVE-2026-31431
(does not affect Ubuntu 26.04)