[Beowulf] Heads up - Stack-Clash local root vulnerability

Kilian Cavalotti kilian.cavalotti.work at gmail.com
Wed Jun 21 09:09:26 PDT 2017


On Wed, Jun 21, 2017 at 8:59 AM, Peter St. John <peter.st.john at gmail.com> wrote:
> I'd check to see that the vector of attack is something that pertains to my
> system, before worrying to much about the vulnerability. Maybe the vector is
> the Preview Pane in Outlook, right?

I'm afraid the vector of attack is, given enough skills, any user
account running any binary on any Linux, *BSD or Solaris machine.

And when exploits are released, which Qualys said they will do, all
hell will break loose, because the "skills" part will go away...

Cheers,
--
Kilian


More information about the Beowulf mailing list