DigiNews

Tech Watch by Johan Denoyer

← Back to articles

How I Found a $113,337 AF_ALG Linux Local Privilege Escalation Before Copy Fail

Quality: 8/10 Relevance: 9/10

Summary

IDNSEC details CVE-2025-39964, an AF_ALG race condition in the Linux kernel that can enable local privilege escalation and container escape. The piece explains how two concurrent writers can trigger an out-of-bounds access on a scatterlist and turn a kernel read into an arbitrary write via a usercopy oracle, and how a patch now prevents concurrent writes on the same socket. It also notes the kernelCTF reward and responsible disclosure.

🚀 Service construit par Johan Denoyer