Saturday, 13 Dec 2025
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > Global Market > Ubuntu namespace vulnerability should be addressed quickly: Expert
Global Market

Ubuntu namespace vulnerability should be addressed quickly: Expert

Last updated: March 29, 2025 4:10 pm
Published March 29, 2025
Share
Linux source code with a binary background. 3D rendered Illustration.
SHARE

Contents
Options supposed to enhance safetyThree bypasses

Thus, “there may be little influence of not ‘patching’ the vulnerability,” he mentioned. “Organizations utilizing centralized configuration instruments like Ansible could deploy these adjustments with repeatedly scheduled upkeep or reboot home windows.” 

Options supposed to enhance safety

Satirically, final October Ubuntu launched AppArmor-based options to enhance safety by lowering the assault floor from unprivileged person namespaces within the Linux kernel. It didn’t fairly do this.

“That is an unintended consequence the place a safety management was put in place nevertheless it isn’t absolutely utilized,” mentioned Beggs, “so it permits anybody to push and escalate their privileges.”

Three bypasses

Unprivileged person namespaces are a characteristic within the Linux kernel which might be supposed to supply extra sandboxing performance for applications similar to container runtimes, says Ubuntu. It permits unprivileged customers to realize administrator (root) permissions inside a confined atmosphere, with out giving them elevated permissions on the host system.

Nonetheless, unprivileged person namespaces have been repeatedly used to use kernel vulnerabilities, so the AppArmor restriction added to Ubuntu 23.10 and 24.04 LTS was presupposed to act as a safety hardening measure.

However Qualys discovered three different bypasses, every of which permits an area attacker to create person namespaces with full administrator capabilities, and subsequently to nonetheless exploit vulnerabilities in kernel elements that require capabilities similar to CAP_SYS_ADMIN or CAP_NET_ADMIN:

Source link

See also  Why Businesses Are Leaving the Cloud: Key Drivers of Cloud Repatriation
TAGGED: addressed, expert, namespace, Quickly, Ubuntu, vulnerability
Share This Article
Twitter Email Copy Link Print
Previous Article Layer Health Layer Health Raises $21M in Series A Funding
Next Article PU Prime Becomes the Official Regional Sponsor of the Argentina National Football Team PU Prime Becomes the Official Regional Sponsor of the Argentina National Football Team
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

Free-fall system inspects the quality of precision stamped parts during the production process

A number of hundred stamped elements per minute are fed right into a measuring sphere…

December 11, 2024

Rigetti, Oxford Instruments Launch One of UK’s First Quantum Computers

Rigetti UK, a subsidiary of Rigetti Computing, and Oxford Devices NanoScience have marked the completion…

April 22, 2024

Airwallex Raises US$300M at a US$6.2 Billion Valuation

Airwallex, an Australian supplier of a world funds and monetary platform for contemporary companies, raised…

May 22, 2025

Chinese startup Manus challenges ChatGPT in data visualization: which should enterprises use?

Need smarter insights in your inbox? Join our weekly newsletters to get solely what issues…

July 22, 2025

SAS aims to make AI accessible regardless of skill set with packaged AI models

SAS, a specialist in knowledge and AI options, has unveiled what it describes as a…

April 18, 2024

You Might Also Like

Data center / enterprise networking
Global Market

P4 programming: Redefining what’s possible in network infrastructure

By saad
Why data centre megadeals must prove their value
Global Market

Why data centre megadeals must prove their value

By saad
photo illustration of clouds in the shape of dollar signs above a city
Global Market

Cloud providers continue to push EU court to undo Broadcom-VMware merger

By saad
Kao SEED Fund awards £30,000 to Harlow community projects
Global Market

Kao SEED Fund awards £30,000 to Harlow community projects

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
You can revoke your consent any time using the Revoke consent button.