You are here

LinuxSecurity.com

Subscribe to Feed LinuxSecurity.com
The central voice for Linux and Open Source security news.
Përditësimi: 2 ditë 1 orë më parë

Why Seccomp Must Be Rechecked After Container Restore

Mër, 23/09/2026 - 3:25pd
Seccomp limits which Linux system calls a process can make.

How Container Restore Can Reopen Privilege Escalation Paths

Mër, 23/09/2026 - 3:15pd
Privilege escalation in a container does not always begin with a new exploit.

What CRIU Restores Beyond Application Memory in Linux Containers

Mër, 23/09/2026 - 3:15pd
Linux containers can be paused, checkpointed, and rebuilt later with CRIU.

Why Container Security Needs a Separate Restore Boundary

Mër, 23/09/2026 - 2:59pd
A container normally starts under the security rules of the system receiving it.

CRI-O Restore Flaw Can Bypass Kubernetes Security Policies

Mër, 23/09/2026 - 2:45pd
Kubernetes groups one or more containers into a pod, the basic unit it deploys.

PH4NTXM Linux Builds a Disposable Identity at Every Boot

Mër, 23/09/2026 - 2:25pd
A live Linux distribution runs from removable media, usually a USB drive, without requiring a permanent installation.

CISA Confirms Active Exploitation of Linux Kernel Crypto Flaw

Mar, 22/09/2026 - 7:30pd
CISA has added CVE-2025-39964, a flaw in the Linux kernel’s built-in cryptography interface, to its list of vulnerabilities being used in real attacks.

Researchers Show How Prompt Injection Could Expose AWS AgentCore Credentials

Mar, 22/09/2026 - 7:15pd
Security researchers have shown how hidden instructions in an AWS AgentCore support ticket could push an AI agent into running commands as root and exposing a service credential.

crun Tightens GPU Security for Containers Running in MicroVMs

Mar, 22/09/2026 - 7:15pd
The crun container runtime has changed how GPU-enabled workloads launch a key graphics helper.

Linux Fixes Two Memory Safety Bugs in DMA Cleanup

Mar, 22/09/2026 - 6:45pd
Linux developers have fixed two memory-safety bugs in the subsystem that lets hardware move data without constant help from the CPU.

Linux Fixes Input Bugs That Could Leak Kernel Memory

Mar, 22/09/2026 - 6:35pd
Linux developers have fixed two input-system bugs that could expose small pieces of leftover kernel memory to a local program.

Linux Fix SELinux Overlays Important Security Contexts 401610

Mar, 22/09/2026 - 1:00pd
Linux developers have fixed an SELinux flaw that could allow a program to make a mapped file executable after SELinux had blocked direct execution.

CISA Confirms Active Exploitation of Linux ebtables Flaw

Mar, 22/09/2026 - 12:45pd
CISA has added CVE-2026-53266, a Linux kernel flaw in the ebtables bridge firewall, to its list of vulnerabilities known to be exploited.

Linux Security Roundup: Patch BIND, Browsers, and Cloud Kernels First

Pre, 18/09/2026 - 11:00md
Most administrators do not think about BIND, browser engines, or cloud kernels until one of them fails.

Linux Packet Metadata Could Point to Headers That No Longer Exist

Pre, 18/09/2026 - 10:15md
Linux packet metadata could keep pointing to network headers after the underlying packet had been rebuilt without them.

Linux eBPF Security Flaw Could Approve an Out-of-Bounds Memory Access

Pre, 18/09/2026 - 10:00md
A Linux eBPF security flaw could cause the kernel to approve a program using an incorrect understanding of the values it would process.

Linux Security Researcher Uses AI to Find Four Python Code-Execution Flaws

Enj, 17/09/2026 - 11:15md
Security researcher Sai Teja Erukude disclosed four alarming Python security flaws between June and August 2026 after combining specialized AI models with automated scanning and manual code review.

CISA Warns of Active Attacks on a Critical Cisco ISE Flaw

Enj, 17/09/2026 - 11:00md
Attackers are exploiting a critical Cisco ISE flaw that can open the product’s web management interface without a valid login. Cisco disclosed CVE-2026-76460 on September 16 and traced the problem to the way an ISE API handles authentication. A remote attacker does not need credentials or help from a user. A crafted request is enough to reach the vulnerable interface.

How a PowerPC Guest Could Trigger a KVM Use-After-Free

Enj, 17/09/2026 - 10:45md
A PowerPC KVM use-after-free could leave the Linux host kernel accessing a nested-guest object after another virtual CPU caused that object to be removed and freed. The upstream Linux correction adds a missing reference that keeps the object alive while KVM invalidates cached address translations.

Red Hat Quay Build Workflow Could Expose Registry Credentials

Enj, 17/09/2026 - 10:00md
As of September 17, Red Hat had documented a flaw in a Red Hat Quay build workflow that could expose container registry credentials to code retrieved from a mutable GitHub Action branch. Tracked as CVE-2026-85469, the issue created a software supply chain risk in the workflow used to publish Quay builder images.

Faqet