Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Cybersecurity firm FireEye has defended the decision to place an injunction against a researcher as the only way to protect trade secrets. Last week, reports surfaced suggesting the cyberforensics firm attempted to prevent the public disclosure of security vulnerabilities discovered within the firm's suite of software. . Felix Wilhelm, a security researcher for ERNW GmBH, disclosed the flaw, which permitted the default use of the root account on Apache servers linked to FireEye clients. If an attacker exploited this flaw, they would be able to compromise servers, leading to data theft and control without permissions issues -- one of the worst and most critical vulnerabilities imaginable. . CyberDefense battles a legal order that seeks to silence a developer disclosing a major Nginx vulnerability endangering user safety.. FireEye Trade Secret, Apache Security Flaw, Cybersecurity Research. . LinuxSecurity.com Team
A member of the Debian GNU/Linux system administration team believes there is an unknown local root exploit for the Linux kernel circulating in the wild and says it may have been used to compromise four servers belonging to the free software . . . . A member of the Debian GNU/Linux system administration team believes there is an unknown local root exploit for the Linux kernel circulating in the wild and says it may have been used to compromise four servers belonging to the free software project, after initial unprivileged access was gained by using a sniffed password. Debian is a free operating system which uses the Linux kernel; most of the basic OS tools come from the GNU project hence the name GNU/Linux. The break-in was reported on November 21. An ongoing investigation had shown that a sniffed password was used to initially access the server named klecker, one of four which was compromised, a post to one of the Debian mailing lists, by James Troup, said. Troup said that on November 20, it had been noticed that the kernel on a server called master, which hosts the project's bug tracking system, was doing an oops - something which occurs when the kernel code gets into an unrecoverable state. . The Debian GNU/Linux development group warns of a potential local root vulnerability following a breach of credentials that may have impacted their server infrastructure.. Debian Server Security, Root Exploit Incident, Password Sniffing Attack. . Anthony Pell
A serious bug has been discovered in the Linux kernel that can be used by local users to gain root access. The problem, a vulnerability in the Linux kernel capability model, exists in kernel versions up to and including version 2.2.15. According to Alan Cox, a key member of the Linux developer community, "It will affect programs that drop setuid state and rely on losing saved setuid, even those that check that the setuid call succeeded." To ensure that this vulnerability cannot be exploited by programs running on Linux, Linux users are advised to update to kernel version 2.2.16 immediately. Information on "capabilities" are discussed in the Capabilities FAQ We also recently ran a story on a capabilities-based operating system that is worth reading. . A serious bug has been discovered in the Linux kernel that can be used by local users to gain root access. The problem, a vulnerability in the Linux kernel capability model, exists in kernel versions up to and including version 2.2.15. According to Alan Cox, a key member of the Linux developer community, "It will affect programs that drop setuid state and rely on losing saved setuid, even those that check that the setuid call succeeded." To ensure that this vulnerability cannot be exploited by programs running on Linux, Linux users are advised to update to kernel version 2.2.16 immediately. Information on "capabilities" are discussed in the Capabilities FAQ We also recently ran a story on a capabilities-based operating system that is worth reading. The link for this article located at Sendmail.net --Â Â is no longer available. . A serious bug has been discovered in the Linux kernel that can be used by local users to gain root a. serious, linux, kernel, local, users. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.