Actors
Malware
Campaigns
CVEs
Feed
Blog
Home
/
CVEs
/
CVE-2026-81000
CVE
CVE-2026-81000
View on NVD ↗
net: tun: bound receive headroom
MITRE ATT&CK TTPs
5
T1068
Exploitation for Privilege Escalation
Privilege Escalation
T1078
Valid Accounts
Defense Evasion
T1134
Access Token Manipulation
Defense Evasion
T1210
Exploitation of Remote Services
Lateral Movement
T1548
Abuse Elevation Control Mechanism
Privilege Escalation
Source Articles
Public Exploits Released for Four Linux Kernel Flaws That Enable Local Root
Security researcher Asim Manizada publicly released exploit code for four Linux kernel vulnerabilities—DirtyAH6, TUNderflow, PPPoEject, and DiagSpill—that enable local privilege escalation to root. All four flaws are memory-safety bugs in kernel networking code, with CVEs assigned and fixes available in updated kernel versions. While no in-the-wild exploitation has been reported, the public release of working, targeted exploits increases risk for unpatched systems, especially shared or multi-user environments. DiagSpill is particularly concerning as it requires no special privileges, only the SCTP module being loaded with non-default options.
hacker-news
Sep 18, 2026