Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4356 articles · 196341 vulns · 36/41 feeds (7d)
← Back to list
EST
PRE-CVE
linux · rds kernel module

PinTheft Linux Local Privilege Escalation via RDS Zerocopy Double-Free

60% confidence

Description

PinTheft is a Linux local privilege escalation exploit targeting a double-free vulnerability in the RDS zerocopy send path. The flaw occurs when user pages are pinned during zerocopy sends, and subsequent page faults lead to duplicate page reference drops during error handling and message cleanup. This allows reference count manipulation via io_uring fixed buffers to overwrite page cache contents, enabling privilege escalation by modifying a SUID-root binary.

Affected Products

VendorProductVersions
linuxrds kernel module—

Related News (1 articles)

Tier C
oss-security96d ago
PinTheft Linux LPE
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
CWECWE-829
PublishedMay 19, 2026
Last enriched96d ago
Tags
linuxlperds
Trending Score0
Source articles1
Independent1
Info Completeness6/14
Missing: cve_id, versions, cvss, epss, kev, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-53359EXP
KVM: x86: Fix shadow paging use-after-free due to unexpected role
Trending: 62
HIGHCVE-2026-46331EXP
net/sched: fix pedit partial COW leading to page cache corruption
Trending: 61
HIGHCVE-2026-64600EXP
xfs: resample the data fork mapping after cycling ILOCK
Trending: 53
HIGHCVE-2026-46242EXP
eventpoll: fix ep_remove struct eventpoll / struct file UAF
Trending: 49
HIGHCVE-2026-53366EXP
ipv4: account for fraggap on the paged allocation path
Trending: 47

Pin to Dashboard

Verification

State: reported
Confidence: 60%

Vulnerability Timeline

CVE Published
May 19, 2026
Discovered by ZDM
May 19, 2026
Exploit Available
May 19, 2026