What's new

New Linux Privilege Escalation Flaw Uncovered in Snap Package Manager

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Tech Junky

Part of the Furniture

Additionally discovered by the cybersecurity firm are six other flaws –

  • CVE-2021-3995 – Unauthorized unmount in util-linux's libmount
  • CVE-2021-3996 – Unauthorized unmount in util-linux's libmount
  • CVE-2021-3997 – Uncontrolled recursion in systemd's systemd-tmpfiles
  • CVE-2021-3998 – Unexpected return value from glibc's realpath()
  • CVE-2021-3999 – Off-by-one buffer overflow/underflow in glibc's getcwd()
  • CVE-2021-44730 – Hardlink attack in snap-confine's sc_open_snapd_tool()
 

Additionally discovered by the cybersecurity firm are six other flaws –

  • CVE-2021-3995 – Unauthorized unmount in util-linux's libmount
  • CVE-2021-3996 – Unauthorized unmount in util-linux's libmount
  • CVE-2021-3997 – Uncontrolled recursion in systemd's systemd-tmpfiles
  • CVE-2021-3998 – Unexpected return value from glibc's realpath()
  • CVE-2021-3999 – Off-by-one buffer overflow/underflow in glibc's getcwd()
  • CVE-2021-44730 – Hardlink attack in snap-confine's sc_open_snapd_tool()
...and patched and updated on Arch, let the year of the Linux desktop continue..
 

Latest threads

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top