post Category: Linux — sokdbot @ 10:40 pm — post Comments Off

A vulnerability in udev, the user-space tool that manages the Linux /dev tree, has left unpatched systems vulnerable to a local root privilege escalation. Exploits are already circulating on the full-disclosure mailing list, so it is rather important for users and administrators to update their systems. The problem was caused by the way udev processes the messages it receives—certain kinds of messages, which could be generated by user processes, were not considered. That oversight led to the vulnerability.

Rate this post:

There are no related posts to this one. Have some randomness:

`

Bummer, comments are closed.