Falha no kernel do Linux permite que usuários sem privilégios obtenham acesso root

Pesquisadores da Qualys identificaram uma falha de lógica no kernel do Linux que permite que usuários locais sem privilégios revelem arquivos confidenciais e executem comandos arbitrários como root.

A vulnerabilidade afeta instalações padrão de várias das principais distribuições Linux. A Unidade de Pesquisa de Ameaças da Qualys descobriu o problema e detalhou a questão em uma postagem de blog publicada na sexta-feira.

Artigos relacionados

Illustration depicting the Linux CopyFail vulnerability enabling root access exploits alongside Ubuntu's DDoS-induced outage.
Imagem gerada por IA

Linux CopyFail exploit threatens root access amid Ubuntu outage

Reportado por IA Imagem gerada por IA

A critical Linux vulnerability known as CopyFail, tracked as CVE-2026-31431, allows attackers to gain root access on systems running kernels since 2017. Publicly released exploit code has heightened risks for data centers and personal devices. Ubuntu's infrastructure has been offline for over a day due to a DDoS attack, hampering security communications.

A security researcher has disclosed Dirty Frag, a new Linux kernel exploit that allows local users to gain root privileges. The flaw affects major distributions and remains unpatched on most systems despite earlier fixes for a similar issue.

Reportado por IA

A new Linux local privilege escalation vulnerability known as Fragnesia has been made public. The flaw is described as similar to Dirty Frag and involves an ESP/XFRM logic bug.

A newly published zero-day exploit allows attackers with physical access to bypass BitLocker encryption on Windows 11 devices in seconds. The attack, named YellowKey, targets the default TPM-only configuration and grants full access to encrypted drives via a simple USB-based method.

Reportado por IA

Greg Kroah-Hartman, maintainer of the Linux kernel, stated that AI-driven code review tools have become genuinely useful. He told The Register that the technology reached an inflection point about a month ago, leading to actionable bug reports.

quinta-feira, 21 de maio de 2026, 05:10h

Rust proposal targets 80 percent of linux kernel cves

segunda-feira, 18 de maio de 2026, 02:56h

Linus Torvalds flags AI reports flooding kernel security list

sábado, 16 de maio de 2026, 01:18h

Linux 7.1 kernel adds rules for security bugs and ai reports

segunda-feira, 11 de maio de 2026, 16:32h

Linux kernel could gain kill switch for vulnerable functions

terça-feira, 05 de maio de 2026, 17:44h

US government issues urgent CopyFail warning as Linux patches roll out

segunda-feira, 04 de maio de 2026, 03:03h

Red Hat directs users to security page for CopyFail vulnerability

sexta-feira, 10 de abril de 2026, 14:10h

Greg Kroah-Hartman runs AI-assisted fuzzing on Linux kernel

Este site usa cookies

Usamos cookies para análise para melhorar nosso site. Leia nossa política de privacidade para mais informações.
Recusar