minus-squareLee@retrolemmy.comtoLinux@programming.dev•The same 732-byte Python script roots every Linux distribution shipped since 2017linkfedilinkarrow-up6·2 months agoWhile the POC requires su, the underlying flaw potentially works on any setuid binary on systems with AF_ALG enabled (provided there isn’t something else preventing it). linkfedilink
While the POC requires
su, the underlying flaw potentially works on any setuid binary on systems withAF_ALGenabled (provided there isn’t something else preventing it).