[CVE-2023-2156] Route of Root: Bring a "DoS only" bug to LPE and bypass the existing patch to win $10,500 in kernelCTF
nebusec.ai | research | CVE-2023-2156 | #privilege-escalation | #linux-kernel | #exploit | #ipv6 | #kernelctf | #cve-2026-43501
Summary
NebuSec's Route of Root (CVE-2026-43501) turns a 'DoS-only' IPv6 bug into root: one crafted packet triggers a 14-byte kernel OOB write, bypassing the CVE-2023-2156 patch—a $10,500 kernelCTF win.
- Published
- Collected
Skip to content