2 ms·
Copy Fail: 732 Bytes to Root on Every Major Linux Distribution
- eyalitki 5mo agoThe presented LPE vulnerability was gradually introduced to the Linux Kernel through refactors and optimizations, each commit making sense on its own. The vulnerability itself was exploitable since 2017 (!) and also doubles as a container escape.
- eyalitki 5mo agoDup of: https://news.ycombinator.com/item?id=47952181 https://news.ycombinator.com/item?id=47952181
- immanuwell 5mo agothe real kicker is the page cache trick making it invisible to disk-based integrity checks, which means your auditd and tripwire setups are worth exactly nothing here