Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape

Summary

A use-after-free vulnerability in the Linux kernel's AF_UNIX socket subsystem allows attackers to escape containers and gain root access on the host. The flaw, tracked as CVE-2026-80521 with a CVSS score of 7.8, has been patched upstream but is unpatched in several Ubuntu LTS releases.

IFF Assessment

FOE

This vulnerability allows for a container escape and host root compromise, which is detrimental to defenders.

Severity

7.8 High

Defender Context

Defenders should prioritize patching the Linux kernel to address this vulnerability, especially on Ubuntu LTS systems. Monitoring for container escape attempts and unusual host process activity can also help detect exploitation.

Read Full Story →