Traffic Control

The Linux Kernel Bug That Turns a Network Tool Into a Root Exploit

A newly discovered Linux kernel exploit (CVE-2026-46331) turns the Traffic Control subsystem—a tool meant to manage network bandwidth—into a local privilege escalation weapon. Any unprivileged user can become root on vulnerable systems. The fix is in v7.1-rc7, but thousands of servers remain unpatched. This is a stark reminder that internal kernel subsystems are the new attack surface.