Sudo Flaw Lets Linux Users Run Commands As Root Even When They're Restricted
#sudo #vulnerabiilty #security #linux #bash #shell
https://thehackernews.com/2019/10/linux-sudo-run-as-root-flaw.html?m=1
Sudo Flaw Lets Linux Users Run Commands As Root Even When They're Restricted

A vulnerability in Sudo, tracked as CVE-2019-14287, could allow Linux users to run commands as root user even when they're restricted.

Seems like anything that #Intel does to improve performance ends up exploding in their face, kind of like SMT. #DDIO #vulnerabiilty #security

#NetCAT - VUSec
https://www.vusec.net/projects/netcat/

NetCAT - VUSec

NetCAT shows that network-based cache side-channel attacks are a realistic threat. Cache attacks have been traditionally used to leak sensitive data on a local setting (e.g., from an attacker-controlled virtual machine to a victim virtual machine that share the CPU cache on a cloud platform). With NetCAT, we show this threat extends to untrusted clients … Continue reading NetCAT →

VUSec

Queue the Spectre theme music, it's back with a vengeance! 👻

CVE-2019-1125 "SWAPGS" Is The Newest Spectre Vulnerability

https://www.phoronix.com/scan.php?page=news_item&px=CVE-2019-1125-SWAPGS

#spectre #vulnerabiilty #infosec #cybersec

CVE-2019-1125 "SWAPGS" Is The Newest Spectre Vulnerability - Phoronix

Thankfully, #Slackware is not affected. Neither are the BSDs, but that goes without saying.  #systemd #systemdown #vulnerabiilty #linux #security

https://www.qualys.com/2019/01/09/system-down/system-down.txt