Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape
AI-summarised brief · reviewed before publication
A use‑after‑free flaw in the Linux kernel’s AF_UNIX socket subsystem (CVE‑2026‑80521, CVSS 7.8) lets attackers escape a container and gain host root. The bug, fixed upstream on August 6, remains unpatched in Ubuntu 26.04, 24.04, and 22.04 LTS releases, affecting AWS, Azure, and GCP workloads. DepthFirst released exploit code for Ubuntu 26.04 and recommends microVM isolation. No public attacks have been reported, and no temporary workaround is available.
💡 Why It Matters
- · The flaw underscores how AI‑driven discovery is lowering the barrier for container escapes, forcing organizations to rethink container security as a hard boundary.