Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape
Summary
A use-after-free vulnerability in the Linux kernel's AF_UNIX socket subsystem allows attackers to escape containers and gain root access on the host. The flaw, tracked as CVE-2026-80521 with a CVSS score of 7.8, has been patched upstream but is unpatched in several Ubuntu LTS releases.
IFF Assessment
FOE
This vulnerability allows for a container escape and host root compromise, which is detrimental to defenders.
Severity
7.8
High
Defender Context
Defenders should prioritize patching the Linux kernel to address this vulnerability, especially on Ubuntu LTS systems. Monitoring for container escape attempts and unusual host process activity can also help detect exploitation.