wtf
An unprivileged local user can write 4 controlled bytes into the page cache of any readable file on a Linux system, and use that to gain root.
If your kernel was built between 2017 and the patch — which covers essentially every mainstream Linux distribution — you're in scope.
how does that only get a CVE score of 7.8, the impact of this is huge








Exactly, it's only an improvement until they're bought and we're all in the same boat again. We need a federated forge and open standards.