Blåhaj Lemmy
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
ikidd@lemmy.world to Linux@programming.devEnglish · 10 months ago

New Linux Flaws Enable Full Root Access via PAM and Udisks Across Major Distributions

thehackernews.com

external-link
message-square
4
link
fedilink
  • cross-posted to:
  • linux@sh.itjust.works
  • linux@lemmy.ml
53
external-link

New Linux Flaws Enable Full Root Access via PAM and Udisks Across Major Distributions

thehackernews.com

ikidd@lemmy.world to Linux@programming.devEnglish · 10 months ago
message-square
4
link
fedilink
  • cross-posted to:
  • linux@sh.itjust.works
  • linux@lemmy.ml
Just a moment...
thehackernews.com
external-link
alert-triangle
You must log in or # to comment.
  • atrielienz@lemmy.world
    link
    fedilink
    English
    arrow-up
    4
    ·
    10 months ago

    Would implementing something like this prevent this problem?

    https://discussion.fedoraproject.org/t/securing-fedora-with-fido2-utrust-full-disk-luks-gui-login-and-sudo-authentication/154136

    • dgdft@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      10 months ago

      That is a setup guide for hardware key and passkey auth. It is not a hardening guide, and does nothing to mitigate these LPE vulns.

      • atrielienz@lemmy.world
        link
        fedilink
        English
        arrow-up
        6
        ·
        10 months ago

        Thank you. That’s what I wanted to know.

    • TeNppa@sopuli.xyz
      link
      fedilink
      arrow-up
      4
      ·
      10 months ago

      This is said in the article:

      To mitigate the risk posed by these flaws, it’s essential to apply patches provided by the Linux distribution vendors. As temporary workarounds, users can modify the Polkit rule for “org.freedesktop.udisks2.modify-device” to require administrator authentication (“auth_admin”).

Linux@programming.dev

linux@programming.dev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !linux@programming.dev

A community for everything relating to the GNU/Linux operating system (except the memes!)

Also, check out:

  • !linux_memes@programming.dev
  • !linuxphones@lemmy.ca
  • our Matrix group chat
  • !reactos@programming.dev

Original icon base courtesy of lewing@isc.tamu.edu and The GIMP

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 271 users / day
  • 1.18K users / week
  • 4.5K users / month
  • 10.4K users / 6 months
  • 157 local subscribers
  • 13.3K subscribers
  • 4.4K Posts
  • 30.3K Comments
  • Modlog
  • mods:
  • Ategon@programming.dev
  • adr1an@programming.dev
  • dwraf_of_ignorance@programming.dev
  • BE: 0.19.16
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org