Search

Linux Exploit in the Wild; Gives Any User Root Access in Less Than Five Seconds

Advertisement
Highlights
  • Kernel flaw estimated to be around since 2007
  • The exploit is trivial to execute and never fails
  • Exploit doesn't leave any traces behind
Linux Exploit in the Wild; Gives Any User Root Access in Less Than Five Seconds

In modern world, user security is a crucial factor when it comes to deciding on a service, technology or an operating system. This is precisely why various companies go the distance to convince potential customers that they provide the most secure platform. The venerable open-source operating system, Linux, has often been under the scanner for vulnerabilities, and now a security researcher has discovered a nine-year old flaw is seeing active exploits in the wild. The local privilege escalation vulnerability is a kernel flaw can give any user write access that could lead to complete root access.

Phil Oester, the Linux security researcher who initially discovered the flaw (CVE-2016-5195), told V3 that organisations and individuals have been asked to patch the Linux servers in order to avoid this bug, which has been dubbed as 'Dirty COW', an acronym for the duplication technique called copy-on-write.

"The exploit in the wild is trivial to execute, never fails and has probably been around for years - the version I obtained was compiled with gcc 4.8," Oester was quoted as saying in the report. In an email to Ars Technica, he added, "Any user can become root in < 5 seconds in my testing, very reliably. Scary stuff... The vulnerability is easiest exploited with local access to a system such as shell accounts. Less trivially, any web server/application vulnerability which allows the attacker to upload a file to the impacted system and execute it also works."

The bug was first patched 11 years ago, admittedly 'badly', by Linus Torvalds himself. But the fox was later undone in another code commit, Torvalds explains in his notes for the latest patch to the Linux kernel. Oester estimates the bug has existed since 2007, and adds that the flaw is currently being exploited maliciously - something he discovered with "rolling packet captures".

"As to who is being targeted, anyone running Linux on a web facing server is vulnerable," Oester adds. Ars Technica points out flaw is in section of the Linux kernel that's part of "virtually every distribution of the open-source OS released for almost a decade." Distributors are now releases patches for their versions of Linux.

"A race condition was found in the way the Linux kernel's memory subsystem handled the copy-on-write (COW) breakage of private read-only memory mappings. An unprivileged, local user could use this flaw to gain write access to otherwise read-only memory mappings and thus increase their privileges on the system," Red Hat said in a note regarding the kernel flaw.

Even though the attack complexity is a problem, because they can target different layers, Oester suggested that an antivirus software can be programmed to detect - but not block - an attack. As per the dedicated page for this flaw, exploitation of this bug doesn't leave any traces behind.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

 
Show Full Article
Please wait...
Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo Y400 Pro 5G India Launch Today: All You Need to Know
  2. OTT Releases This Week: Ground Zero, Detective Sherdil, Found S2, and More
  3. Oppo Reno 14 5G Series Teased to Launch in India Soon
  4. Samsung Galaxy M36 5G India Launch Date and Key Features Revealed
  5. Nothing Phone 3 to Get New Glyph Matrix Interface on the Rear Panel
  6. Poco F7 5G to Be Equipped With a Snapdragon 8s Gen 4 SoC
  7. BSNL Announces Name of Its 5G Service in India
  8. Samsung Galaxy Z Fold 7, Z Flip 7 Launch Date Leaked Online
  9. Vodafone Idea to Bring Direct-to-Device Satellite Connectivity to India
  10. Vivo T4 Lite 5G to Launch in India on June 24; Chipset Confirmed
  1. Samsung Galaxy Z Fold 7 Leaked Renders Hint at Design Changes; Storage Options Tipped
  2. Vivo Y400 Pro 5G Launching Today: Price in India, Expected Features and Specifications
  3. Fast Radio Bursts Reveal Universe’s Missing Matter Hidden in Cosmic Intergalactic Fog
  4. Apollo Astronauts Found Orange Glass Beads on the Moon, Scientists Now Know Why
  5. World’s Oldest Tailored Dress Found in Egyptian Tomb Dates Back Over 5,000 Years
  6. Ancient Footprints in White Sands Confirm Humans Reached America 23,000 Years Ago
  7. Humanoid Robot Achieves Controlled Flight Using Jet Propulsion and AI Systems
  8. Curiosity Rover Reaches Uyuni Quad, Begins New Mars Mapping and Surface Analysis Campaign
  9. NASA to Gather Reentry Imagery of European Commercial Capsule Using High-Altitude Aircraft
  10. ESA's Proba-3 Unveils First-Ever Artificial Solar Eclipse Images from Precision Satellite Formation
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »