Safest Space
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
schnurrito@discuss.tchncs.de to cybersecurity@infosec.pub · 5 months ago

The most severe Linux threat to surface in years catches the world flat-footed

arstechnica.com

external-link
message-square
6
link
fedilink
18
external-link

The most severe Linux threat to surface in years catches the world flat-footed

arstechnica.com

schnurrito@discuss.tchncs.de to cybersecurity@infosec.pub · 5 months ago
message-square
6
link
fedilink
CopyFail threatens multi-tenant servers, CI/CD work flows, Kubernetes containers, and more.
alert-triangle
You must log in or register to comment.
  • Onno (VK6FLAB)@lemmy.radio
    link
    fedilink
    arrow-up
    5
    ·
    5 months ago

    https://www.cve.org/CVERecord?id=CVE-2026-31431

  • corsicanguppy@lemmy.ca
    link
    fedilink
    arrow-up
    3
    ·
    5 months ago

    Do the sysctl mod and you’re good until the patch comes out. Such hype.

  • zo0@programming.dev
    link
    fedilink
    arrow-up
    3
    arrow-down
    2
    ·
    5 months ago

    They released the vulnerability without disclosing it to the vendors first? Am I understanding this right?

    • borari@lemmy.dbzer0.com
      link
      fedilink
      arrow-up
      10
      ·
      5 months ago

      No, they disclosed it to the Linux kernel security team, a patch was committed to mainline, then this was disclosed publicly. https://copy.fail/#timeline

      They don’t have to coordinate disclosure with every distribution vendor, but droppings public PoC exploit script 28 days after the patch was committed to mainline kind of seems like a dick move to me.

      • Semperverus@lemmy.world
        link
        fedilink
        arrow-up
        1
        ·
        5 months ago

        It technically follows the industry standard rules (and companies who have been exploited have 30 days to disclose breaches in the U.S. so there’s probably similar “best practice” stuff with these kinds of disclosures)

        • WhatAmLemmy@lemmy.world
          link
          fedilink
          arrow-up
          2
          arrow-down
          1
          ·
          5 months ago

          It’s technically still a dick move unless it’s seen in the wild and distros are dragging their heels.

          Sometimes it’s best to use logic instead of best practices.

    • poinck@lemmy.worlddeleted by creator
      link
      fedilink
      arrow-up
      2
      ·
      edit-2
      2 months ago

      deleted by creator

cybersecurity@infosec.pub

cybersecurity@infosec.pub

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !cybersecurity@infosec.pub

An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!

Community Rules

  • Be kind
  • Limit promotional activities
  • Non-cybersecurity posts should be redirected to other communities within infosec.pub.

Enjoy!

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 5 users / day
  • 98 users / week
  • 354 users / month
  • 2.3K users / 6 months
  • 1 local subscriber
  • 6.46K subscribers
  • 571 Posts
  • 917 Comments
  • Modlog
  • mods:
  • shellsharks@infosec.pub
  • tweedge@infosec.pub
  • BE: 0.19.20
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org