Nasty Linux kernel bug found and fixed
Summary
This means a large value of "size" results in a high positive value instead of a negative value as expected. And, as all programmers know, writing beyond the memory your program is supposed to have access to is a terrible thing. That done, its trivial to execute arbitrary code and give the attacker root privileges. If thats the case, an unprivileged local user can open a filesystem that does not support the File System Context application programming interface (API). In this situation, it drops back to legacy handling, and from there, the flaw can escalate an attackers system privileges.
Classifications
industries
HealthTech
applications
General BI
AskAI Classifications
Labels
Operating Systems
Infrastructure Software
DevOps Tools
Linked Companies
Canonical, Ltd.
$50M to $100M
CrowdStrike
$1B+
GitHub, Inc.
$1M to $5M
Google LLC
$100M to $250M
Red Hat
$1B+
OpenShift
$1M to $5M