Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Cubs Outright Ben Cowles – MLB Trade Rumors

    May 5, 2026

    Thursday TV Ratings: Grey’s Anatomy, The Hunting Party, Elsbeth, Scrabble, Next Level Chef – canceled + renewed TV shows, ratings

    May 5, 2026

    Met Gala Interrupted By Blood-Splattered ‘Bird’ PETA Protester

    May 5, 2026
    Facebook X (Twitter) Instagram
    Select Language
    Facebook X (Twitter) Instagram
    NEWS ON CLICK
    Subscribe
    Tuesday, May 5
    • Home
      • United States
      • Canada
      • Spain
      • Mexico
    • Top Countries
      • Canada
      • Mexico
      • Spain
      • United States
    • Politics
    • Business
    • Entertainment
    • Fashion
    • Health
    • Science
    • Sports
    • Travel
    NEWS ON CLICK
    Home»Science & Technology»US Science & Tech»US government warns of severe CopyFail bug affecting major versions of Linux
    US Science & Tech

    US government warns of severe CopyFail bug affecting major versions of Linux

    News DeskBy News DeskMay 4, 2026No Comments3 Mins Read
    Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email VKontakte Telegram
    US government warns of severe CopyFail bug affecting major versions of Linux
    Share
    Facebook Twitter Pinterest Email Copy Link

    A severe security vulnerability affecting almost every version of the Linux operating system has caught defenders off-guard and scrambling to patch after security researchers publicly released exploit code that allows attackers to take complete control of vulnerable systems.

    The U.S. government says the bug, dubbed “CopyFail,” is now being exploited in the wild, meaning it’s being actively used in malicious hacking campaigns.

    The bug, officially tracked as CVE-2026-31431 and discovered in Linux kernel versions 7.0 and earlier, was disclosed to the Linux kernel security team in late March, and patched after about a week. But the patches have yet to fully trickle down to the many Linux distributions that rely on the vulnerable kernel, leaving any system running an affected Linux version at risk of compromise.

    Linux is widely used in enterprise settings, running the computers that operate much of the world’s data centers. 

    The CopyFail website says that the same short Python script “roots every Linux distribution shipped since 2017.” According to security firm Theori, which discovered CopyFail, the vulnerability was verified in several widely used versions of Linux including Red Hat Enterprise Linux 10.1, Ubuntu 24.04 (LTS), Amazon Linux 2023, as well as SUSE 16. 

    DevOps engineer and developer Jorijn Schrijvershof wrote in a blog post that the exploit works on Debian and Fedora versions, as well as Kubernetes, which relies on the Linux kernel. Schrijvershof described the bug as having an “unusually big blast radius” as it works on “nearly every modern distribution” of Linux.

    The bug is called CopyFail because the affected component in the Linux kernel, the core of the operating system that has virtually complete access to the entire device, does not copy certain data when it should. This corrupts sensitive data within the kernel, allowing the attacker to piggyback the kernel’s access to the rest of the system, including its data.

    If exploited, the bug is particularly problematic because it allows a regular, limited-access user to gain full-administrator access on an affected Linux system. A successful compromise of a server in a data center could allow an attacker to gain access to every application, server, and database of numerous corporate customers, and potentially gain access to other systems on the same network or data center.

    The CopyFail bug cannot be exploited over the internet on its own, but can be weaponized if used in conjunction with an exploit that works over the internet. Per Microsoft, if the CopyFail bug is chained together with another vulnerability that can be delivered over the internet, an attacker could use the flaw to gain root access to an affected server. A user operating a Linux computer with a vulnerable kernel could also be tricked into opening a malicious link or attachment that triggers the vulnerability.

    The bug could also be injected by way of supply chain attacks, in which malicious actors hack into an open source developer’s account and plant the malware in their code in order to compromise a large number of devices in one go.

    Given the risk to the federal enterprise network, U.S. cybersecurity agency CISA has ordered all civilian federal agencies to patch any affected systems by May 15.

    When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

    cyberattacks Cybersecurity Linux
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Telegram Copy Link
    News Desk
    • Website

    News Desk is the dedicated editorial force behind News On Click. Comprised of experienced journalists, writers, and editors, our team is united by a shared passion for delivering high-quality, credible news to a global audience.

    Related Posts

    US Science & Tech

    Elon Musk Settles With The SEC For $1.5 Million After Years-Long Dispute Over His Twitter Investment

    May 4, 2026
    US Science & Tech

    The White House Is Considering Tighter Regulation Of New AI Models

    May 4, 2026
    US Science & Tech

    iOS 26.5 Will Add End-To-End Encryption For RCS Messages Between Apple And Android

    May 4, 2026
    US Science & Tech

    Image AI models now drive app growth, beating chatbot upgrades

    May 4, 2026
    US Science & Tech

    Katie Haun raises $1B for new venture funds

    May 4, 2026
    US Science & Tech

    Mini Motorways Is Letting Players Vote For Its Next City Map

    May 4, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Don't Miss

    Cubs Outright Ben Cowles – MLB Trade Rumors

    News DeskMay 5, 20260

    The Cubs have sent infielder Ben Cowles outright to Triple-A Iowa, according to his transactions…

    Thursday TV Ratings: Grey’s Anatomy, The Hunting Party, Elsbeth, Scrabble, Next Level Chef – canceled + renewed TV shows, ratings

    May 5, 2026

    Met Gala Interrupted By Blood-Splattered ‘Bird’ PETA Protester

    May 5, 2026

    ‘Go out and grab it’

    May 5, 2026
    Tech news by Newsonclick.com
    Top Posts

    Orioles contact-less lineup tries for better results vs. Guardians

    April 19, 2026

    Missouri town fires half its city council over data center deal

    April 13, 2026

    Avatar de Cerati recrea el espíritu de Soda Stereo

    April 14, 2026

    La Jornada: México SA

    April 14, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Editors Picks

    Cubs Outright Ben Cowles – MLB Trade Rumors

    May 5, 2026

    Thursday TV Ratings: Grey’s Anatomy, The Hunting Party, Elsbeth, Scrabble, Next Level Chef – canceled + renewed TV shows, ratings

    May 5, 2026

    Met Gala Interrupted By Blood-Splattered ‘Bird’ PETA Protester

    May 5, 2026

    ‘Go out and grab it’

    May 5, 2026
    About Us

    NewsOnClick.com is your reliable source for timely and accurate news. We are committed to delivering unbiased reporting across politics, sports, entertainment, technology, and more. Our mission is to keep you informed with credible, fact-checked content you can trust.

    We're social. Connect with us:

    Facebook X (Twitter) Instagram Pinterest YouTube
    Latest Posts

    Cubs Outright Ben Cowles – MLB Trade Rumors

    May 5, 2026

    Thursday TV Ratings: Grey’s Anatomy, The Hunting Party, Elsbeth, Scrabble, Next Level Chef – canceled + renewed TV shows, ratings

    May 5, 2026

    Met Gala Interrupted By Blood-Splattered ‘Bird’ PETA Protester

    May 5, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Editorial Policy
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    • Advertise
    • Contact Us
    © 2026 Newsonclick.com || Designed & Powered by ❤️ Trustmomentum.com.

    Type above and press Enter to search. Press Esc to cancel.