Thursday, 9 Apr 2026
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > Global Market > Ubuntu namespace vulnerability should be addressed quickly: Expert
Global Market

Ubuntu namespace vulnerability should be addressed quickly: Expert

Last updated: March 29, 2025 4:10 pm
Published March 29, 2025
Share
Linux source code with a binary background. 3D rendered Illustration.
SHARE

Contents
Options supposed to enhance safetyThree bypasses

Thus, “there may be little influence of not ‘patching’ the vulnerability,” he mentioned. “Organizations utilizing centralized configuration instruments like Ansible could deploy these adjustments with repeatedly scheduled upkeep or reboot home windows.” 

Options supposed to enhance safety

Satirically, final October Ubuntu launched AppArmor-based options to enhance safety by lowering the assault floor from unprivileged person namespaces within the Linux kernel. It didn’t fairly do this.

“That is an unintended consequence the place a safety management was put in place nevertheless it isn’t absolutely utilized,” mentioned Beggs, “so it permits anybody to push and escalate their privileges.”

Three bypasses

Unprivileged person namespaces are a characteristic within the Linux kernel which might be supposed to supply extra sandboxing performance for applications similar to container runtimes, says Ubuntu. It permits unprivileged customers to realize administrator (root) permissions inside a confined atmosphere, with out giving them elevated permissions on the host system.

Nonetheless, unprivileged person namespaces have been repeatedly used to use kernel vulnerabilities, so the AppArmor restriction added to Ubuntu 23.10 and 24.04 LTS was presupposed to act as a safety hardening measure.

However Qualys discovered three different bypasses, every of which permits an area attacker to create person namespaces with full administrator capabilities, and subsequently to nonetheless exploit vulnerabilities in kernel elements that require capabilities similar to CAP_SYS_ADMIN or CAP_NET_ADMIN:

Source link

See also  Could supersonic flights be the next big thing in air travel? This flight expert isn't so sure
TAGGED: addressed, expert, namespace, Quickly, Ubuntu, vulnerability
Share This Article
Twitter Email Copy Link Print
Previous Article Layer Health Layer Health Raises $21M in Series A Funding
Next Article PU Prime Becomes the Official Regional Sponsor of the Argentina National Football Team PU Prime Becomes the Official Regional Sponsor of the Argentina National Football Team
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

Revel Raises $30M in Total Funding

Revel, a Los Angeles, CA-based supplier of a complete {hardware} management platform, raised $30M throughout…

April 19, 2025

Schneider Electric appoints Matthew Baynes VP of data centre division

Schneider Electrical, a world vitality expertise firm, has appointed Matthew Baynes as the brand new…

January 9, 2026

Made With Intent Raises £1.5M in Seed Funding

Made With Intent, a Manchester, UK-based supplier of a segmentation platform for data-led retailers, raised…

May 4, 2024

Accenture to Acquire Climb

Accenture (NYSE: ACN) is to accumulate Climb, a Japanese expertise companies supplier specializing in system integration,…

April 9, 2024

Turning old data centres green

Jamie Cameron, Affiliate Director, Important Techniques at Cundall, explores why refurbishing beats rebuilding with regards…

June 18, 2024

You Might Also Like

Stargate comes to the UK, with OpenAI, Nvidia and Nscale
Global Market

OpenAI puts Stargate UK on pause, cites ‘high energy costs’

By saad
open source digital screen
Global Market

New v2 UALink specification aims to catch up to NVLink

By saad
Could being a ‘good neighbour’ help secure grid access?
Global Market

Could being a ‘good neighbour’ help secure grid access?

By saad
Server racks with illuminated indicators in a dimly lit data center.
Global Market

Aria Networks raises $125M, launches platform for AI factories

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
You can revoke your consent any time using the Revoke consent button.