Urgent Security Update: Fix for Dirty Frag Kernel CVES – Upgrade ASAP

Urgent Security Update: Fix for Dirty Frag Kernel CVES – Upgrade ASAP

Dear deepin users and community partners, Recently, a local privilege escalation vulnerability in the Linux kernel was disclosed, referred to in the industry as Dirty Frag or Copy Fail 2. This vulnerability is a variant of the same class as the Copy Fail vulnerability. An attacker who has already obtained local low-privilege code execution may exploit this vulnerability to tamper with the page cache of read-only files, further escalate privileges, and gain root access. According to publicly available information, exploit code for this vulnerability has already been circulated. Given its severity and widespread impact, we strongly recommend that all users ...Read more