Nasty regreSSHion bug in OpenSSH puts around 700K Linux boxes at risk

Canada News News

Nasty regreSSHion bug in OpenSSH puts around 700K Linux boxes at risk
Canada Latest News,Canada Headlines
  • 📰 TheRegister
  • ⏱ Reading Time:
  • 46 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 22%
  • Publisher: 61%

Full system takeovers on the cards, for those with enough patience to pull it off

Glibc-based Linux systems are vulnerable to a new bug in OpenSSH's server and should upgrade to the latest version.

"In our security analysis, we identified that this vulnerability is a regression of the previously patched vulnerability CVE-2006-5051, which was reported in 2006,"Qualys."A regression in this context means that a flaw, once fixed, has reappeared in a subsequent software release, typically due to changes or updates that inadvertently reintroduce the issue.

This signal handler can then call functions that aren't async-signal-safe, such as syslog – an issue attackers can exploit to execute arbitrary code and all manner of other nastiness. Possibilities include a full system takeover,Poyfill.

Qualys's tests were a touch quicker, taking around three to four hours and in the region of 10,000 attempts to beat it. However, it took six to eight hours to obtain a root shell because, due to ASLR, the researchers could only predict glibc's address half the time.

We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

TheRegister /  🏆 67. in UK

Canada Latest News, Canada Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

New £700k 'honeypot' plan for Blackburn shopping streetNew £700k 'honeypot' plan for Blackburn shopping streetA Government grant will be used to spruce up King William Street in the town centre - making it a greener and more attractive environment for shoppers
Read more »

Nearly £700k set aside to complete revamps of ‘Muni’ theatre and Market HallNearly £700k set aside to complete revamps of ‘Muni’ theatre and Market Hall“If we hadn’t been constrained by the ridiculously low bid in the first place, the whole of these schemes could have been properly budgeted for'
Read more »

'Jewel in town's crown' searching for £700k after 'not getting enough' cash'Jewel in town's crown' searching for £700k after 'not getting enough' cash'I'm frankly flabbergasted with this report. I said from the get-go that the Levelling-up scheme in Colne was grossly under-funded'
Read more »

Lansweeper finds a lot of CentOS Linux out thereLansweeper finds a lot of CentOS Linux out thereNetwork scan reveals 26 percent of Linux boxes are CentOS 7, EOL later this month. What happens next?
Read more »

Windows 11 and Linux gain ground among Steam gamersWindows 11 and Linux gain ground among Steam gamersWindows 10 still king of the hill for now
Read more »

Version 256 of systemd boasts '42% less Unix philosophy'Version 256 of systemd boasts '42% less Unix philosophy'And it's subsuming another bit of Linux by replacing sudo
Read more »



Render Time: 2025-08-28 06:17:12