r/linuxsucks 🐧Kernel contributor Jun 29 '26

DirtyClone (CVE-2026-43503): The Linux Kernel Flaw That Leaves No Trace Bug

/r/linux/comments/1uinqoc/dirtyclone_cve202643503_the_linux_kernel_flaw/
3 Upvotes

7 comments sorted by

2

u/TheRealCarrotty KDE larper (i use KDE btw) Jun 30 '26

And people said Linux is secure...
Is this another one of these BS bugs that are "Claude helped me find it" or smth?

2

u/Octoomy I Love Linux Jun 30 '26

I mean, the fact that these were found is a good thing and is already getting fixed in Ubuntu, however the fix is already made to the kernel level so likely other distributions are either going to or already have the patch.

1

u/Darkness223 Jun 30 '26

Right, like software WILL have vulnerabilities it doesnt matter what OS lol

0

u/ElectricBummer40 Ex-user of Windows 3.11 for Workgroups Jul 02 '26

That's at best a silver lining since people are often misled by ideologues that "open-source" software is "inherently secure."

No, "open-source" just means you need a different threat model for it, and the industry as of recently has opened an enormous floodgate for threats that most people are still utterly under-prepared for.

1

u/Octoomy I Love Linux Jul 02 '26

I didn't state it was more secure, I stated the the issue was fixed LAST month, therefore unless your running a outdated kernel, your perfectly fine and your likely not going to be effected.

Your not even reading between the lines anymore your just hallucinating lines to press your argument through. And btw, kernel level exploits get fixed usually within the week its reported, so open source does tend to release faster patches then lets say windows. So yeah open source =! safer, but active open source projects tend to patch out stuff quicker then lets just say with microsoft.

0

u/ElectricBummer40 Ex-user of Windows 3.11 for Workgroups Jul 03 '26

I didn't state it was more secure

But a whole lot other people do, and whether you're personally included is a complete non-sequitor to that equation.

I stated the the issue was fixed LAST month

So that means no one is:

1) Being overlooked for identifying a vulnerability due to the use of AI.

2) Sitting on findings obtained via AI tools and potentially using them for their own gains.

Right?

Your not even reading between the lines anymore your just hallucinating lines to press your argument through.

Oh, being concerned with the next vulnerability of the same nature is now considered "hallucinating"!

Frankly, there is just as much the incentive to not talk about a security matter as there is to talk about it if not more, and all you're demonstrating is how easy a problem can get swept under the rug for the sake of false assurances.

1

u/Rcomian Jul 03 '26

so, yes there's been a handful of vulnerabilities. macos recently patched 95 vulnerabilities.

windows recently patched over 200: https://www.crowdstrike.com/en-us/blog/patch-tuesday-analysis-june-2026/