CrackArmor : failles AppArmor Linux - corrigez Ubuntu et Debian maintenant
https://goodtech.info/crackarmor-failles-apparmor-linux-ubuntu-debian-escalade-root-correctifs/
This Week in Security: Linux Flaws, Python Ownage, and a Botnet Shutdown
🛡️ MariaDB's new AppArmor profile is now enforcing in Debian unstable and heading to Ubuntu 26.04. I developed it against 7,000+ tests to minimize false positives, full story at https://optimizedbyotto.com/post/new-apparmor-profile-for-mariadb/
If you are a dba/sysadmin, check your logs and share feedback via the Debian bug tracker.

Linux kernel security modules provide a good additional layer of security around individual programs by restricting what they are allowed to do, and at best block and detect zero-day security vulnerabilities as soon as anyone tries to exploit them, long before they are widely known and reported. However, the challenge is how to create these security profiles without accidentally also blocking legitimate actions. For MariaDB in Debian and Ubuntu, a new AppArmor profile was recently created by leveraging the extensive test suite with 7000+ tests, giving good confidence that AppArmor is unlikely to yield false positive alerts with it.\n
AppArmor-Sicherheitslücken erklärt: Was „CrackArmor“ für Linux-Nutzer wirklich bedeutet
**Sicherheitslücken in AppArmor: Warum Linux-Updates jetzt wichtig sind** Neun kritische Schwachstellen in AppArmor (CrackArmor) ermöglichen Rechteausweitung und Container-Escape. Betroffen sind Ubuntu-Systeme – Updates sind dringend nötig.**Sicherheitslücken in AppArmor: Warum Linux-Updates jetzt wichtig sind** Neun kritische Schwachstellen in AppArmor (CrackArmor) ermöglichen Rechteausweitung und Container-Escape. Betroffen sind Ubuntu-Systeme – Updates sind dringend nötig.

Qualys TRU has discovered confused deputy vulnerabilities in AppArmor (named “CrackArmor”) that allow unprivileged users to bypass kernel protections, escalate to root, and break container isolation. The flaw has existed since 2010, and compromises 20 million+ systems globally. Immediate kernel patching is recommended to neutralize these vulnerabilities.