Linux Core Dump Flaws Threaten Password and Data Security

1 min read
Source: The Hacker News
Linux Core Dump Flaws Threaten Password and Data Security
Photo: The Hacker News
TL;DR Summary

Two race condition vulnerabilities in Linux core dump handlers (apport and systemd-coredump) could allow local attackers to access sensitive information, including password hashes, on Ubuntu, RHEL, and Fedora systems. Mitigations include disabling core dumps for SUID binaries, and patches are recommended to prevent exploitation.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

3 min

vs 4 min read

Condensed

93%

67044 words

Want the full story? Read the original article

Read on The Hacker News