更新されたよ、見に来てね!→ #rsync#AI 開発論争から #CIFSwitch まで、速さの裏の検証を聞く 2026/6/1 #Linux #News #devops https://www.youtube.com/watch?v=iA9Oyr3m4bw
#rsync の #AI 開発論争から #CIFSwitch まで、速さの裏の検証を聞く 2026/6/1 #Linux #News #devops

YouTube
更新されたよ、見に来てね!→ 【ダイジェスト版】#rsync の #AI 開発論争から #CIFSwitch まで、速さの裏の検証を聞く 2026/6/1 #Linux #News #devops https://www.youtube.com/shorts/JcL1RrqPKkM
【ダイジェスト版】#rsync の #AI 開発論争から #CIFSwitch まで、速さの裏の検証を聞く 2026/6/1 #Linux #News #devops

YouTube
New CIFSwitch Linux flaw gives root on multiple distributions

A newly discovered local privilege escalation vulnerability dubbed 'CIFSwitch' in the Linux kernel could allow attackers to forge CIFS authentication key descriptions, abuse the kernel's key request mechanism, and gain root privileges.

BleepingComputer

A critical local privilege escalation (LPE) vulnerability, dubbed CIFSwitch, has been uncovered in the Linux kernel's CIFS subsystem—and it's been there for 19 years! Discovered by Asim Viladi Oglu Manizada at SpaceX, this flaw allows unprivileged local users to gain root privileges on many Linux distributions. This discovery highlights the persistent challenge of finding deeply embedded…

https://www.tpp.blog/v7os9xt

#cybersecurity #cifswitch #linuxsecurity

🤖 This post was AI-generated.

#CIFSwitch Vulnerability Exposes Some #Linux Distros to Local Root Access linuxiac.com/cifswitch-vu...

CIFSwitch Vulnerability Expose...
CIFSwitch Vulnerability Exposes Some Linux Distros to Local Root Access

The flaw affects the boundary between the Linux CIFS client and cifs-utils, allowing local root access on some systems.

Linuxiac
CIFSwitch Vulnerability Exposes Some Linux Distros to Local Root Access

The flaw affects the boundary between the Linux CIFS client and cifs-utils, allowing local root access on some systems.

Linuxiac
Linux-Kernel-Härtung: Analyse der CIFSwitch-LPE-Schwachstelle (CVE-2026-31431)

SYSTEM_LOG_SECURITY_DEEP_DIVE Ein tiefer Vorstoß in die Kernel-Struktur: Wir analysieren, wie die CIFSwitch-Lücke (CVE-2026-31431) den SPNEGO-Upcall-Pfad kompromittiert und unprivilegierten Usern Root-Zugriff auf Multi-Tenant-Systemen ermöglicht. Es ist…

Blake-Hofer IT Systems

With the recent #CIFSwitch #Linux #Kernel #Venerability being exposed, time has come for a rewrite and rethink of some basic Linux internals.

There is no need for a crypto graphic authentication to be done by root user or by a user having CAP_SYS_ADMIN privileges. A separate user with a single cryptographic privilege should suffice. A user incapable of loading shared libraries.

Helper and services ought not to run with root like it was done for cifs. Rather a restricted user ought to be used.

Erneut Schwachstelle im Kernel entdeckt

Die Kette der durch KI-Tools entdeckten Schwachstellen im Kernel reißt nicht ab. Neuester Kandidat ist CIFSwitch, eine Lücke, die seit 2007 im Kernel…

LinuxNews.de

https://heyitsas.im/posts/cifswitch/

And another one #Linux #LPE #cifswitch
The #PoC #exploit is at large. The kernel patch is public (vendors are adapting it right now I guess). No CVE is assigned yet.

CIFSwitch: a non-universal Linux local root vulnerability

Harnessing LLMs to composing complex, multihop vulnerability chains

Hey, it's Asim