Jump to content

Clever attack exploits fully-patched Linux kernel


{BBI}Nexus{BBI}
 Share

Recommended Posts

A recently published attack exploiting newer versions of the Linux kernel is getting plenty of notice because it works even when security enhancements are running and the bug is virtually impossible to detect in source code reviews...

 

Read more at The Register.

 

Any security experts here who can put this into some understandable plain speaking context?

Link to comment
Share on other sites

The exploit works only when a security extension knows as SELinux, or Security-Enhanced Linux, is enabled. Conversely, it also works when audio software known as PulseAudio is installed.

 

I always knew Pulseaudio is evil, I'm quite surprised though, that it can trigger a kernel vulnerability as it's running in userland AFAIK.

 

Edit: apparently it's related to some SUID binaries (of pulseaudio I imagine).

Edited by tux99
Link to comment
Share on other sites

 Share

×
×
  • Create New...