Sign In
Friday, May 15, 2026
  • العربية
Top Header VOE Logo Header Dark Mode VOE Logo
  • Latest
  • Emirates
  • News
    • Gulf Countries
    • Arab Countries
    • World
  • Politics
    • Analysis
    • Interviews
    • Reports and investigations
  • Business
    • Companies
    • Real Estate
    • Stock Market
    • Green Energy
    • Oil And Gas
    • Bitcoin
    • Business Reports
  • Science and Tech
    • AI
    • Electric Vehicles
    • Space and Mars
  • Sport
    • World Cup 2026
  • Society
  • Health
  • Lifestyle
  • Travel and Hotels
Reading: the “Copy Fail” Attack: Linux Kernel Flaw Grants Attackers Root Access
Share
Latest
Trump’s final warning to Tehran: a comprehensive peace agreement or inevitable military confrontation
During the first quarter.. 486 million dirhams in “Tabreed” revenues
Oil prices rose by more than 1% amid increasing Chinese demand and tensions in the Strait of Hormuz
Mohammed bin Zayed is at the forefront of his future.. The Prime Minister of India arrives in the Emirates on an official visit
An American Apache helicopter made an emergency landing in a rice field in South Korea
Font ResizerAa
Voice Of EmiratesVoice Of Emirates
  • العربية
  • Latest News
Search
  • News
    • Emirates
    • Gulf Countries
    • Arab Countries
    • World
  • Politics
    • Analysis
    • Interviews
    • Reports and investigations
  • Business
    • Companies
    • Real Estate
    • Stock Market
    • Green Energy
    • Oil And Gas
    • Bitcoin
    • Business Reports
  • Science and Tech
    • AI
    • Electric Vehicles
    • Space and Mars
  • Lifestyle
  • Society
  • Sport
    • World Cup 2026
  • Health
  • Travel and Hotels
Have an existing account? Sign In
Follow US
All rights reserved © Voice of Emirates - News service from Our Media Group
Science and Tech

the “Copy Fail” Attack: Linux Kernel Flaw Grants Attackers Root Access

CVE-2026-31431 affects most distributions since 2017; Manipulating the Page Cache bypasses Integrity Monitoring; Experts warn of "deterministic" container escape to host systems

karem Saqr
Last updated: 07/05/2026 6:05 am
Karim Saqr
karem Saqr
ByKarim Saqr
News Editor
Karim Saqr is an editor at Voice Of Emirates and some of Egyptian newspapers.
- News Editor
1 week ago
Share
2 Min Read
Copy Fail attack on Linux kernel memory. (Photo / Agencies)
SHARE
Highlights
  • “Memory Manipulation”: How the Attack Bypasses File Security?
  • “Container Escape”: A Direct Threat to Kubernetes and Cloud Environments

Abu Dhabi – Security researchers have disclosed a critical local privilege escalation (LPE) vulnerability in the Linux Kernel, dubbed “Copy Fail” (CVE-2026-31431). This flaw resides in the kernel’s cryptographic interface (algif_aead) and allows unprivileged users to gain full root administrative access. Unlike historical vulnerabilities, Copy Fail is highly deterministic and reliable, affecting nearly all Linux distributions released between 2017 and early 2026.

“Memory Manipulation”: How the Attack Bypasses File Security?

The exploit leverages a logic flaw where the kernel, prioritizing efficiency during (splice) system calls, mistakenly allows “read-only” memory pages to become temporarily writable. By overwriting specific 4-byte segments in the in-memory Page Cache of system binaries like (/usr/bin/su), an attacker modifies the application’s behavior without ever altering the physical file on the disk. Consequently, standard File Integrity Monitoring (FIM) systems are bypassed, as the disk-based signatures remains unchanged while the live memory is corrupted.

“Container Escape”: A Direct Threat to Kubernetes and Cloud Environments

Copy Fail serves as a potent primitive for container escapes. Since the Linux kernel manages a global Page Cache shared between the host and containers, an attacker compromising a single container can corrupt the shared memory to compromise the entire underlying host or Kubernetes (K8s) node. This escalation facilitates credential harvesting, lateral movement across cloud infrastructures, and ultimately enables massive data exfiltration or financial extortion.

TAGGED:cyber securitydigital vulnerabilitiesLinux KernelLinux systemVoice Of Emirates
SOURCES:Voice Of Emiratesextrahop
Share This Article
Facebook Whatsapp Whatsapp LinkedIn Telegram Threads Email Copy Link Print
Previous Article Google Chrome Warning: Your Browser Is Silently Consuming 4GB of Disk Space
Next Article Berlin imposes strict restrictions on Russian symbols during "Victory Day" celebrations Berlin imposes strict restrictions on Russian symbols during “Victory Day” celebrations
36°C
Dubai
clear sky
37° _ 36°
24%
5 km/h
Fri
35 °C
Sat
31 °C
Sun
35 °C
Mon
31 °C
Tue
31 °C

Editor's Pick

Trump's final warning to Tehran: a comprehensive peace agreement or inevitable military confrontation

Trump’s final warning to Tehran: a comprehensive peace agreement or inevitable military confrontation

China and its role in stabilizing global markets

By
Ali Ragab
3 Min Read
During the first quarter.. 486 million dirhams in "Tabreed" revenues
During the first quarter.. 486 million dirhams in “Tabreed” revenues

The company's performance during the first quarter of the year was characterized…

2 Min Read
Oil prices rose by more than 1% amid increasing Chinese demand and tensions in the Strait of Hormuz
Oil prices rose by more than 1% amid increasing Chinese demand and tensions in the Strait of Hormuz

Oil, geopolitical rumors, and their impact on prices

2 Min Read

Trending

Mohammed bin Zayed is at the forefront of his future.. The Prime Minister of India arrives in the Emirates on an official visit

Mohammed bin Zayed is at the forefront of his future.. The Prime Minister of India arrives in the Emirates on an official visit

An official reception ceremony was held for the Indian Prime…

27 minutes ago

An American Apache helicopter made an emergency landing in a rice field in South Korea

South Korea: US helicopter makes emergency…

38 minutes ago

India raises fuel prices by 3 rupees due to the fallout from the Iran war

India raises fuel prices for the…

51 minutes ago

An Israeli soldier from the Golani Brigade was killed by Hezbollah fire in southern Lebanon

Lebanon: Tensions escalate after Israeli soldier…

1 hour ago

Violent Protests in Tripoli: Al-Ittihad Fans Spark Chaos Near Government Headquarters

Riots and fires break out following…

5 hours ago

You may also be interested in

AIScience and Tech

From Robotic Arms to Smart Workers: Global Factories Bracing for the Era of Humanoid Robots

Boston - Factories worldwide are entering a pivotal stage of industrial transformation, moving beyond traditional automation based on fixed mechanical…

2 Min Read
AIScience and Tech

Microsoft Integrates Copilot into Edge, Phasing Out Standalone App

Washington - Microsoft has announced an ambitious technical plan to transform its "Edge" browser into a comprehensive intelligent platform by…

2 Min Read
NewsWorld

India and Uzbekistan Open a New Chapter to Strengthen Strategic Partnership and Expand Bilateral Cooperation

New Delhi - India and Uzbekistan have conducted a new round of high-level political consultations aimed at propelling their strategic…

1 Min Read
NewsWorld

South Korea Elections 2026: Candidate Registration Closes for Local and Parliamentary Seats

Seoul - The National Election Commission (NEC) of South Korea is set to close candidate registration this Friday evening for…

2 Min Read
Top Header VOE Logo Header Dark Mode VOE Logo
  • About Us
  • Contact us
  • Advertise with us
  • Privacy Policy
Reading: the “Copy Fail” Attack: Linux Kernel Flaw Grants Attackers Root Access
Share
  • Publishing Principles
  • Ethics Policy
  • Corrections Policy
  • Diversity Policy
  • Actionable Feedback Policy
  • Ownership & Funding
  • Privacy Policy
Reading: the “Copy Fail” Attack: Linux Kernel Flaw Grants Attackers Root Access
Share

All rights reserved © Voice Of Emirates – a news service from Our Media Group

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?