Sunday, 8 Feb 2026
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > Global Market > Ubuntu namespace vulnerability should be addressed quickly: Expert
Global Market

Ubuntu namespace vulnerability should be addressed quickly: Expert

Last updated: March 29, 2025 4:10 pm
Published March 29, 2025
Share
Linux source code with a binary background. 3D rendered Illustration.
SHARE

Contents
Options supposed to enhance safetyThree bypasses

Thus, “there may be little influence of not ‘patching’ the vulnerability,” he mentioned. “Organizations utilizing centralized configuration instruments like Ansible could deploy these adjustments with repeatedly scheduled upkeep or reboot home windows.” 

Options supposed to enhance safety

Satirically, final October Ubuntu launched AppArmor-based options to enhance safety by lowering the assault floor from unprivileged person namespaces within the Linux kernel. It didn’t fairly do this.

“That is an unintended consequence the place a safety management was put in place nevertheless it isn’t absolutely utilized,” mentioned Beggs, “so it permits anybody to push and escalate their privileges.”

Three bypasses

Unprivileged person namespaces are a characteristic within the Linux kernel which might be supposed to supply extra sandboxing performance for applications similar to container runtimes, says Ubuntu. It permits unprivileged customers to realize administrator (root) permissions inside a confined atmosphere, with out giving them elevated permissions on the host system.

Nonetheless, unprivileged person namespaces have been repeatedly used to use kernel vulnerabilities, so the AppArmor restriction added to Ubuntu 23.10 and 24.04 LTS was presupposed to act as a safety hardening measure.

However Qualys discovered three different bypasses, every of which permits an area attacker to create person namespaces with full administrator capabilities, and subsequently to nonetheless exploit vulnerabilities in kernel elements that require capabilities similar to CAP_SYS_ADMIN or CAP_NET_ADMIN:

Source link

See also  Kirigami parachute suitable for humanitarian missions stabilizes quickly and doesn't pitch
TAGGED: addressed, expert, namespace, Quickly, Ubuntu, vulnerability
Share This Article
Twitter Email Copy Link Print
Previous Article Layer Health Layer Health Raises $21M in Series A Funding
Next Article PU Prime Becomes the Official Regional Sponsor of the Argentina National Football Team PU Prime Becomes the Official Regional Sponsor of the Argentina National Football Team
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

Why 2025 will redefine data infrastructure: 11 expert predictions

Be part of our each day and weekly newsletters for the newest updates and unique…

December 31, 2024

EDB unveils EDB Postgres AI

Relational database supplier EnterpriseDB (EDB) on Thursday launched EDB Postgres AI, a brand new database geared toward transactional,…

May 28, 2024

How debugging and data lineage techniques can protect Gen AI investments

Because the adoption of AI accelerates, organisations could overlook the significance of securing their Gen…

April 1, 2025

Frazier Healthcare Partners Closes $2.3 Billion 11th Growth Buyout Fund

Frazier Healthcare Partners, a Seattle, WA-based devoted healthcare personal fairness agency, introduced the shut of its newest flagship…

November 21, 2024

Laennec AI Raises Pre-Seed Funding

Laennec AI, a Cardiff, UK-based medical AI firm, raised an undisclosed quantity in Pre-Seed funding.…

November 30, 2024

You Might Also Like

Levi’s Stadium hosts Super Bowl LX
Global Market

Super Bowl LX raises network expectations

By saad
A person watching a stream of videos on a tablet
Global Market

Ruckus makes some noise with preconfigured switches for AV-over-IP networks

By saad
SpaceX
Global Market

Musk’s million data centers in space won’t fly, say experts

By saad
Is your Java estate audit-ready – or just hoping for the best?
Global Market

Is your Java estate audit-ready – or just hoping for the best?

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
You can revoke your consent any time using the Revoke consent button.