Search

Linux Exploit in the Wild; Gives Any User Root Access in Less Than Five Seconds

Advertisement
Highlights
  • Kernel flaw estimated to be around since 2007
  • The exploit is trivial to execute and never fails
  • Exploit doesn't leave any traces behind
Linux Exploit in the Wild; Gives Any User Root Access in Less Than Five Seconds

In modern world, user security is a crucial factor when it comes to deciding on a service, technology or an operating system. This is precisely why various companies go the distance to convince potential customers that they provide the most secure platform. The venerable open-source operating system, Linux, has often been under the scanner for vulnerabilities, and now a security researcher has discovered a nine-year old flaw is seeing active exploits in the wild. The local privilege escalation vulnerability is a kernel flaw can give any user write access that could lead to complete root access.

Phil Oester, the Linux security researcher who initially discovered the flaw (CVE-2016-5195), told V3 that organisations and individuals have been asked to patch the Linux servers in order to avoid this bug, which has been dubbed as 'Dirty COW', an acronym for the duplication technique called copy-on-write.

"The exploit in the wild is trivial to execute, never fails and has probably been around for years - the version I obtained was compiled with gcc 4.8," Oester was quoted as saying in the report. In an email to Ars Technica, he added, "Any user can become root in < 5 seconds in my testing, very reliably. Scary stuff... The vulnerability is easiest exploited with local access to a system such as shell accounts. Less trivially, any web server/application vulnerability which allows the attacker to upload a file to the impacted system and execute it also works."

The bug was first patched 11 years ago, admittedly 'badly', by Linus Torvalds himself. But the fox was later undone in another code commit, Torvalds explains in his notes for the latest patch to the Linux kernel. Oester estimates the bug has existed since 2007, and adds that the flaw is currently being exploited maliciously - something he discovered with "rolling packet captures".

"As to who is being targeted, anyone running Linux on a web facing server is vulnerable," Oester adds. Ars Technica points out flaw is in section of the Linux kernel that's part of "virtually every distribution of the open-source OS released for almost a decade." Distributors are now releases patches for their versions of Linux.

"A race condition was found in the way the Linux kernel's memory subsystem handled the copy-on-write (COW) breakage of private read-only memory mappings. An unprivileged, local user could use this flaw to gain write access to otherwise read-only memory mappings and thus increase their privileges on the system," Red Hat said in a note regarding the kernel flaw.

Even though the attack complexity is a problem, because they can target different layers, Oester suggested that an antivirus software can be programmed to detect - but not block - an attack. As per the dedicated page for this flaw, exploitation of this bug doesn't leave any traces behind.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

 
Show Full Article
Please wait...
Advertisement

Related Stories

Popular Mobile Brands
  1. OnePlus 13T Chipset, Rear Camera Details Revealed in New Teasers
  2. Latest OTT Releases: When and What to Watch this Weekend
  3. Nvidia GeForce RTX 5060, GeForce RTX 5060 Ti Price in India Announced
  4. Infinix Note 50s 5G+ With 64-Megapixel Rear Camera Launched in India
  5. Asus Refreshes TUF Gaming A14 With Nvidia GeForce RTX 5060 Laptop GPU
  6. Itel A95 5G With 50-Megapixel Rear Camera Launched in India: See Price
  7. Realme Buds Air 7 Pro Launch Date, Design, Key Features Confirmed
  8. Moto G86 Leaked Design Renders Show Triple Rear Camera Unit
  9. Oppo A5 Pro 5G Confirmed to Arrive on This Date in India
  10. JWST Might Have Revealed New Signs of Alien Life on Nearby Exoplanet
  1. iPhone 18 Price Hike Likely Due to 'Significant' Cost Increase From Adopting TSMC's 2nm Process, Tipster Claims
  2. Signs of Alien Life Detected on Nearby Exoplanet Using NASA’s James Webb Space Telescope
  3. Grok Gets New Memory Feature to Offer Personalised Replies Based on Past Chats
  4. Moto G86 Design Renders Leak Online; Likely to Get Triple Rear Camera Unit
  5. Oppo A5 Pro 5G India Launch Date Announced; to Offer 5,800mAh Battery, IP69 Rating
  6. Google Pixel 9a Is Now Eligible for Android 16 Beta Programme
  7. NASA Curiosity Rover Potentially Deciphers Mars’ Missing Carbonate Mystery
  8. OnePlus 13T Chipset, Camera Details Teased; to Use Snapdragon 8 Elite Chipset
  9. Mario Kart World Direct Details New Courses, Characters and More
  10. Amazon's Vega TV OS Expected to Debut on First Streaming Device in 2025: Report
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »