← Back to feed
Vendors & MarketEmerging1 sourceAug 7, 2026 · 11:10via The Hacker News

18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers

Brief

A use-after-free bug in Linux's SCTP networking code can be turned into full root on a host, and Tencent researchers say they used it to escape a container and reach the machine underneath.

The flaw has existed since 2008. The fix already shipped: stable kernels 7.

  • 6, 6.
  • 42, 6.
  • 101 and 6.
  • 148, released August 3, close it. Anyone running an older kernel with SCTP reachable should update.
Read more on The Hacker News