Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

Another Linux vulnerability

glueckselfglueckself Member
edited May 15 in General

https://github.com/0xdeadbeefnetwork/ssh-keysign-pwn

TLDR: allows users to read files readable only by root (such as the host SSH key, ...).

Workaround is to set /proc/sys/kernel/yama/ptrace_scope to at least 2 or 3.
bit more complicated, https://www.openwall.com/lists/oss-security/2026/05/15/3

Have fun :)

«1

Comments

Sign In or Register to comment.