Orbi Camp
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
schnurrito@discuss.tchncs.de to Linux@programming.dev · 15 hours ago

Bugs Found in sudo

www.linux-magazine.com

external-link
message-square
8
fedilink
32
external-link

Bugs Found in sudo

www.linux-magazine.com

schnurrito@discuss.tchncs.de to Linux@programming.dev · 15 hours ago
message-square
8
fedilink
Bugs Found in sudo » Linux Magazine
www.linux-magazine.com
external-link
Two critical flaws allow users to gain access to root privileges.
alert-triangle
You must log in or register to comment.
  • elmicha@feddit.org
    link
    fedilink
    arrow-up
    22
    ·
    14 hours ago

    In case anyone wonders: these are the same bugs reported (and fixed) last week, not new ones.

  • a_person@lemmy.world
    link
    fedilink
    arrow-up
    11
    arrow-down
    1
    ·
    edit-2
    15 hours ago

    Damn, a cvss score of 9.3 is wild

  • syd@lemy.lol
    link
    fedilink
    arrow-up
    7
    arrow-down
    2
    ·
    14 hours ago

    So ‘sudo-rs’ guys were right?

    • macniel@feddit.org
      link
      fedilink
      arrow-up
      2
      ·
      5 hours ago

      Rusty Bois are never right!

    • e8d79@discuss.tchncs.de
      link
      fedilink
      arrow-up
      4
      ·
      6 hours ago

      I would rather go with a completely new approach like the one of run0.

    • 0x0@lemmy.zip
      link
      fedilink
      arrow-up
      18
      ·
      edit-2
      13 hours ago

      The vulnerability in question would’ve still happened if written in rust, it was not a memory leak.
      More an instance of feature creep, as the solution was to remove the functionality.

      • Comexs@lemmy.zip
        link
        fedilink
        English
        arrow-up
        1
        ·
        7 hours ago

        Would something like ‘doas’ have the same issue?

        • 0x0@lemmy.zip
          link
          fedilink
          arrow-up
          1
          ·
          4 hours ago

          I don’t believe so and it has been suggested as an alternative.

Linux@programming.dev

linux@programming.dev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

A community for everything relating to the GNU/Linux operating system (except the memes!)

Also, check out:

  • [email protected]
  • [email protected]
  • Matrix instant messaging group chat

Original icon base courtesy of [email protected] and The GIMP

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 308 users / day
  • 1.28K users / week
  • 4.48K users / month
  • 9.45K users / 6 months
  • 1 local subscriber
  • 8.31K subscribers
  • 1.4K Posts
  • 8.51K Comments
  • Modlog
  • mods:
  • Ategon@programming.dev
  • adr1an@programming.dev
  • dwraf_of_ignorance@programming.dev
  • BE: 0.19.8
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org