Use cases
Software Products E-commerce MSPs Schools Development & Marketing DevOps Agencies Help Desk
Company
Internet Status Blog Pricing Log in Get started free

Outage in Linode

[DirtyFrag] Linux Privilege Escalation Vulnerability

Minor
May 08, 2026 - Started 21 days ago
Official incident page

Incident Report

Akamai is aware of the recently disclosed “DirtyFrag”[1] vulnerability that followed the “CopyFail”[2] disclosure. This vulnerability is very similar in nature and has a similar impact, exploit path, and mitigation approach. We have not observed any related malicious exploits targeting our infrastructure and are continuing to address the vulnerability across our product portfolio and internal systems. As with “CopyFail”, we are advising customers to consider most Linux distributions to be at-risk until patched. Since the “DirtyFrag” vulnerability was disclosed prior to upstream patches having been made available, we are forced to wait for the different OS providers to create new releases or patches before we can integrate them into the versions we make available to customers. As this is a rapidly developing incident, we will provide further information regarding recommended actions, possible mitigations, and OS updates for all customers who may be affected. [1] https://github.com/V4bel/dirtyfrag/blob/master/assets/write-up.md [2] https://www.linode.com/docs/guides/cve-2026-31431-copy-fail-mitigation/
Components affected
Linode AP-South (Singapore) Linode AP-Northeast-2 (Tokyo 2) Linode AP-South (Singapore) Block Storage Linode AP-West (Mumbai) NodeBalancers Linode AP-South (Singapore) NodeBalancers Linode US-Central (Dallas) NodeBalancers Linode US-Central (Dallas) Kubernetes Engine Linode US-Central (Dallas) Block Storage Linode AP-Southeast (Sydney) Kubernetes Engine Linode CA-Central (Toronto) Kubernetes Engine Linode AP-West (Mumbai) Block Storage Linode US-West (Fremont) NodeBalancers Linode EU-Central (Frankfurt) Linode US-West (Fremont) Linode EU-West (London) Backups Linode AP-Southeast (Sydney) Backups Linode EU-Central (Frankfurt) NodeBalancers Linode AP-South (Singapore) Backups Linode US-Central (Dallas) Backups Linode EU-Central (Frankfurt) Block Storage Linode US-East (Newark) Block Storage Linode US-West (Fremont) Kubernetes Engine Linode Hosted DNS Service Linode AP-Northeast-2 (Tokyo 2) Backups Linode US-Southeast (Atlanta) NodeBalancers Linode AP-Northeast-2 (Tokyo 2) Block Storage Linode CA-Central (Toronto) Backups Linode EU-West (London) Kubernetes Engine Linode EU-Central (Frankfurt) Object Storage Linode EU-Central (Frankfurt) Backups Linode US-Southeast (Atlanta) Backups Linode AP-West (Mumbai) Kubernetes Engine Linode US-West (Fremont) Backups Linode CA-Central (Toronto) NodeBalancers Linode CA-Central (Toronto) Linode EU-West (London) Linode Manager and API Linode AP-Northeast-2 (Tokyo 2) NodeBalancers Linode US-Southeast (Atlanta) Linode Longview Linode AP-West (Mumbai) Linode AP-Southeast (Sydney) NodeBalancers Linode AP-South (Singapore) Kubernetes Engine Linode US-West (Fremont) Block Storage Linode AP-West (Mumbai) Backups Linode US-East (Newark) Backups Linode AP-Northeast-2 (Tokyo 2) Kubernetes Engine Linode EU-West (London) Block Storage Linode CA-Central (Toronto) Block Storage Linode EU-Central (Frankfurt) Kubernetes Engine Linode AP-Southeast (Sydney) Linode EU-West (London) NodeBalancers Linode US-Central (Dallas) Linode AP-South (Singapore) Object Storage Linode .com Linode US-East (Newark) Object Storage Linode US-East (Newark) Linode US-East (Newark) Kubernetes Engine Linode US-East (Newark) NodeBalancers

Trusted by 1,000+ teams

The Status Page Aggregator with Early Outage Detection

Stop finding out about outages from your users. Monitor 6,320+ cloud services and get alerted the second something breaks.

IsDown status aggregator dashboard
Latest Updates ( sorted recent to last )
INVESTIGATING 14 days ago - at 05/15/2026 05:28PM

We are responding to the publication of the most recent variation of the CopyFail[1] adjacent vulnerabilities “DirtyFrag” and “Fragnesia” with additional updates while we wait for upstream OS providers to release patches. Please see our detailed advisory[2] for more information on the current status, possible mitigation mechanisms, and our recommended actions.

We will provide another update when more OS images have been updated and/or additional attack vectors are discovered.

[1] https://www.linode.com/docs/guides/cve-2026-31431-copy-fail-mitigation/
[2] https://www.linode.com/docs/guides/dirty-frag-mitigation/

INVESTIGATING 20 days ago - at 05/09/2026 02:40PM

We have updated our latest Linode kernel to version 7.0.5, which contains the upstream fix from kernel.org for the DirtyFrag vulnerabilities as well as the previous fixes for the recent CopyFail vulnerability. This kernel is available in Cloud Manager and we recommend customers using the Linode-compiled kernel update their configurations to this kernel. We are in parallel tracking the upstream Linux distributions and will provide another update when fixed versions have been released.

INVESTIGATING 21 days ago - at 05/08/2026 01:40PM

Akamai is aware of the recently disclosed “DirtyFrag”[1] vulnerability that followed the “CopyFail”[2] disclosure. This vulnerability is very similar in nature and has a similar impact, exploit path, and mitigation approach. We have not observed any related malicious exploits targeting our infrastructure and are continuing to address the vulnerability across our product portfolio and internal systems.

As with “CopyFail”, we are advising customers to consider most Linux distributions to be at-risk until patched. Since the “DirtyFrag” vulnerability was disclosed prior to upstream patches having been made available, we are forced to wait for the different OS providers to create new releases or patches before we can integrate them into the versions we make available to customers.

As this is a rapidly developing incident, we will provide further information regarding recommended actions, possible mitigations, and OS updates for all customers who may be affected.

[1] https://github.com/V4bel/dirtyfrag/blob/master/assets/write-up.md
[2] https://www.linode.com/docs/guides/cve-2026-31431-copy-fail-mitigation/

The Status Page Aggregator with Early Outage Detection

With IsDown, you can monitor all your critical services' official status pages from one centralized dashboard and receive instant alerts the moment an outage is detected. Say goodbye to constantly checking multiple sites for updates and stay ahead of outages with IsDown.

Start free trial

No credit card required · Cancel anytime · 6320 services available

Integrations with Slack Microsoft Teams Google Chat Datadog PagerDuty Zapier Discord Webhook