oss-sec mailing list archives
Re: CVE-2026-46242 ("Bad Epoll") local privilege escalation on Linux, including Android
From: Jan Engelhardt <ej () inai de>
Date: Thu, 9 Jul 2026 00:40:46 +0200 (CEST)
On Wednesday 2026-07-08 23:20, Jan Schaumann wrote:
No kill-switch. Copy Fail and its variants can be neutralized by unloading their vulnerable modules, but epoll has no such option. It is a core kernel feature that the operating system, network services, and browsers all rely on. The only way to fix it is to apply the patch. Mitigation Because epoll cannot be disabled, Bad Epoll has no simple workaround. The only remedy is to apply the patch.
What about turning off CONFIG_SMP and CONFIG_PREEMPT?
Current thread:
- CVE-2026-46242 ("Bad Epoll") local privilege escalation on Linux, including Android Jan Schaumann (Jul 08)
- Re: CVE-2026-46242 ("Bad Epoll") local privilege escalation on Linux, including Android Jan Engelhardt (Jul 08)
