this post was submitted on 23 Sep 2024
39 points (95.3% liked)

Cybersecurity

5683 readers
24 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected] [email protected] [email protected]

Notable mention to [email protected]

founded 1 year ago
MODERATORS
 

EDIT: Original post seems to have been removed, try this Nitter mirror instead.

top 19 comments
sorted by: hot top controversial new old
[–] [email protected] 14 points 1 month ago (2 children)

Okay, who's giving odds on this one coming anywhere close to living up to its billing?

[–] [email protected] 9 points 1 month ago

The claims are well into the "I found a unicorn" territory, I'm tipping its either "If you misconfigure this, its unsafe", or its a real vuln, and its significantly harder to exploit that they are claiming.

[–] [email protected] 10 points 1 month ago (3 children)

Unauthenticed RCE vs all GNU/Linux systems

So this would probably be SSH related right? Otherwise what would all Linux systems have in common?

[–] [email protected] 15 points 1 month ago (2 children)
[–] [email protected] 5 points 1 month ago

That’s not all GNU/Linux though. Either the OP doesn’t understand a very common container OS, Alpine, doesn’t use systemd (also Void Linux and others outside the container space) or it’s something else.

[–] [email protected] 3 points 1 month ago (1 children)
[–] [email protected] 4 points 1 month ago (1 children)
[–] [email protected] 4 points 1 month ago (1 children)

How would this be unsurprising? Is systemd known for this kind of thing or something?

[–] [email protected] 5 points 1 month ago

Not all Linux's have SSH enabled, especially out of the box.

They have some other posts about IPv6 parsing (also not universal), but that doesnt sound like an "easy" RCE.

[–] [email protected] 4 points 1 month ago (1 children)

If it were SSH though, wouldn't that ALSO include a wider blast radius than just Linux systems?

Like OpenSSH is used all over the damn place, unless I guess there's something specific about the issue that limits it to Linux hosts for some reason?

[–] [email protected] 2 points 1 month ago

He claims the blast radius is bigger, not just Linux. He also claims to be in talks with Apple. So the educated guess would still be openssh

[–] [email protected] 8 points 1 month ago* (last edited 1 month ago) (2 children)

It supposedly affects all GNU/Linux systems, there's no fix, existed for 10 years, severity of 9.9, but there's an "easy workaround".
I'm curious.

[–] [email protected] 11 points 1 month ago (1 children)

easy workaround

Turn the power off?

[–] [email protected] 1 points 1 month ago

Rj45 to 110v adapter is more funnerer.

[–] [email protected] 2 points 1 month ago

If this is true (or at least plausible to the relevant people), the author of that Twitter post will probably be on the radar of any shady government agency worldwide. Not a nice situation to be in.