Skip to content

    Pages for:

  • Faculty
  • Staff
Cornell University
Cornell University
Division of Financial Services
Financial Information Services
  • About
    • Legacy Systems
      • Account Search
      • Standard Reference Numbers
      • Payment Request System
      • JEMS
    • Events
    • News
  • Get Help
    • KFS Help Request (NetID login required)
  • Get Access
  • Guides
    • KFS
      • Set Up and Manage Accounts
      • Balance Inquiries
      • Finding Account Documentation in KFS
      • Financial Processing e-doc Attachment Guidelines
      • Accounts Payable e-docs
      • Capital Assets e-docs
      • Financial Processing e-docs
        • Advance Deposit (AD)
        • Distribution of Income and Expense (DI)
        • Disbursement Voucher (DV)
          • Disbursement Voucher Payees
          • DV Payment Reason Codes
          • Standard Operating Procedure
        • General Ledger Transfer (GLT)
        • Internal Billing (IB)
        • Procurement Card Document (PCDO)
        • Pre-Encumbrance (PE)
        • Transfer of Funds (TF)
      • Labor Distribution e-docs
      • Purchasing e-docs
        • e-SHOP
        • Purchase Order (PO)
        • Purchase Order Amendment (POA)
        • Line-Item Receiving (RCVL)
        • Requisition (REQS)
        • Vendor (PVEN)
    • KDW/Reporting
      • Dashboard Guides and Tutorials
      • Answers Overview
    • FAQ
    • Glossary
    • Acronyms
  • forms
  • CU policies
  • training
  • KFS Support
  • e-SHOP
  • forms
  • CU policies
  • training
  • KFS Support
  • e-SHOP

Security Alert - Kernel Vulnerabilities - Linux (all versions)

Thursday, April 30, 2026 - 4:47pm

<div>A vulnerability known as "CopyFail" (CVE-2026-31431) has been disclosed affecting all versions of Linux released since 2017, allowing an attacker to locally escalate privileges to root using a 732-byte Python script. Peer institutions have reported attacks leveraging this vulnerability. <br><br><strong>Update 05/08/2026</strong>: A newly disclosed Linux kernel local privilege escalation vulnerability chain, dubbed “Dirty Frag” and assigned CVE-2026-43284 and CVE-2026-43500, enables attackers with local access to obtain root privileges by exploiting flaws in the ESP (IPsec) and RxRPC subsystems. While no official patches are currently available, a public proof-of-concept exists. Organizations should assume the vulnerability is valid and exploitable under certain conditions. This vulnerability is a successor to Copy Fail (CVE-2026-31431).<br><br><strong>Update 05/08/2026</strong>: Organizations and users should <strong>not</strong> undertake to "test" these exploits, as this will cause unnecessary alerts and incident response.<strong> </strong><br><br>References:<br><a href="https://copy.fail/">https://copy.fail/</a><br><a href="https://www.wiz.io/blog/dirty-frag-linux-kernel-local-privilege-escalati... a full description of the incident. This will appear in the "see all information" view of this alert.</div><div>Enter a full description of the incident. This will appear in the "see all information" view of this alert.</div>

More info on IT@Cornell site: 
http://itservicealerts.hosting.cornell.edu/view/7755

Division of Financial Services

377 Pine Tree Road, East Hill Plaza
Ithaca, NY 14850

Hours:  8:00 a.m. - 4:30 p.m., Monday - Friday

 

CONTACT US


  • DFS Home
  • Website Feedback
  • Contact DFS
  • CUInfo
  • For DFS Staff
  • Executive Vice President and CFO
  • University Audit Office
  • Office of University Investments
  • Division of Budget and Planning
  • Risk Management and Insurance
  • Cornell University Policy Office
  • Alliance for Diversity and Inclusion
  • Cornell United Way
  • Campus Alerts
  • COVID-19 Etiquette for Faculty and Staff

©2026 Cornell University

Web Accessibility Assistance