18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers

A use-after-free flaw in Linux's SCTP code, present since 2008, allows local users to gain root and escape containers; fixes shipped in stable kernels on August 3.

An 18-year-old use-after-free flaw in Linux's SCTP networking code can let local users gain root and escape containers. The bug has existed since 2008. Tencent researchers demonstrated using it to break out of a container and reach the host. The fix shipped August 3 in stable kernels 7.1.6, 6.18.42, 6.12.101, and 6.6.148. Anyone running an older kernel where SCTP is reachable should update immediately.