cognitive cybersecurity intelligence

News and Analysis

Search

New Linux Security Bugs Could Expose Password Hashes Across Millions of Devices

New Linux Security Bugs Could Expose Password Hashes Across Millions of Devices

The Qualys Threat Research Unit (TRU) has revealed two local information disclosure vulnerabilities affecting millions of Linux systems, which could expose password hashes and other sensitive data. Both vulnerabilities result from race conditions in core-dump handlers Apport and systemd-coredump. Ubuntu, Red Hat and Fedora are vulnerable, and Debian is only affected if systemd-coredump is manually installed. Immediate mitigation involves disabling SUID core dumps; vendor patches are also being prepared. TRU recommends robust monitoring and rapid incident response to tackle these vulnerabilities.

Source: gbhackers.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts

Deep Dive into Endpoint Security

Deep Dive into Endpoint Security

By 2025, the endpoint security landscape will feature integrated EDR, XDR, and EPP solutions to combat diverse cyber threats. Organizations must adopt Zero Trust architectures