The biggest risk in Linux is due to the human error



When the decision map is removed from memory, all catchall objects are disabled and the chain counter is decremented. When errors occur, the deletion can be reversed by adding a counter. CVE-2026-53111 allows this method to be changed. As a result, leveraging can reduce multiple iterations by removing and loosening the chain while other items still point.

“In this blog post, we have seen how a single flawed token created a vulnerability that could be exploited by an unprivileged person on Debian and Ubuntu to increase access,” researchers from the security firm Exodus Intelligence. he wrote on Monday. “Although this exploit introduces the risk of multiple exploits leaking primary addresses, downstream addresses, and stealing control, the stability test resulted in stability of >99% on idle systems.”

Insecurity was regular in the warehouse in February. Security company FuzzingLabs showed proof of concept use in April. Exodus Intelligence, which discovered the bug, also included its PoC project in a post on Monday. It worked on Debian and Ubuntu.

CVE-2026-53111 is one of the at least three The horror of the rise of fortune has hit Linux in recent weeks. The vulnerabilities are very serious, because, when tied to other components, they can be used to escape the security baked into the OS.



Source link

اترك ردّاً

لن يتم نشر عنوان بريدك الإلكتروني. الحقول الإلزامية مشار إليها بـ *