GameOver(lay): Zwei schwerwiegende Linux-Schwachstellen betreffen 40% der Ubuntu-Nutzer

Teilen:

Cybersecurity-Forscher haben zwei schwerwiegende Sicherheitslücken im Ubuntu-Kernel aufgedeckt, die den Weg für lokale Angriffe zur Privilegienerweiterung ebnen könnten.

Cloud security firm Wiz, in a report shared with The Hacker News, said the easy-to-exploit shortcomings have the potential to impact 40% of Ubuntu users.

The impacted Ubuntu versions are prevalent in the cloud as they serve as the default operating systems for multiple [cloud service providers], security researchers Sagi Tzadik and Shir Tamari said.

The vulnerabilities – tracked as CVE-2023-2640 and CVE-2023-32629 (CVSS scores: 7.8) and dubbed GameOver(lay) – are present in a module called OverlayFS and arise as a result of inadequate permissions checks in certain scenarios, enabling a local attacker to gain elevated privileges.

Overlay Filesystem refers to a union mount file system that makes it possible to combine multiple directory trees or file systems into a single, unified file system.

A brief description of the two flaws is below –

CVE-2023-2640 – On Ubuntu kernels carrying both c914c0e27eb0 and UBUNTU: SAUCE: overlayfs: Skip permission checking for trusted.overlayfs.* xattrs, an unprivileged user may set privileged extended attributes on the mounted files, leading them to be set on the upper files without the appropriate security checks.
CVE-2023-32629 – Local privilege escalation vulnerability in Ubuntu Kernels overlayfs ovl_copy_up_meta_inode_data skip permission checks when calling ovl_do_setxattr on Ubuntu kernels.

In a nutshell, GameOver(lay) makes it possible to craft an executable file with scoped file capabilities and trick the Ubuntu Kernel into copying it to a different location with unscoped capabilities, granting anyone who executes it root-like privileges.

Following responsible disclosure, the vulnerabilities have been fixed by Ubuntu as of July 24, 2023.

The findings underscore the fact that subtle changes in the Linux kernel introduced by Ubuntu could have unforeseen implications, Wiz CTO and co-founder Ami Luttwak said in a statement shared with the publication.

Both vulnerabilities are unique to Ubuntu kernels since they stemmed from Ubuntu’s individual changes to the OverlayFS module, the researchers said, adding the issues are comparable to other vulnerabilities such as CVE-2016-1576, CVE-2021-3493, CVE-2021-3847, and CVE-2023-0386.

 

(c) Thin

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
5:23 am, Juli 3, 2025
Wetter-Symbol 12°C
L: 9° | H: 13°
klarer Himmel
Luftfeuchtigkeit: 72 %
Druck: 1026 mb
Wind: 2 mph NNE
Windböe: 5 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 0%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 4:49 am
Sonnenuntergang: 9:20 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
9° | 13°°C 0 mm 0% 12 mph 68 % 1028 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
15° | 26°°C 0 mm 0% 12 mph 59 % 1028 mb 0 mm/h
Sa. Juli 05 10:00 pm
Wetter-Symbol
14° | 19°°C 1 mm 100% 11 mph 93 % 1021 mb 0 mm/h
So. Juli 06 10:00 pm
Wetter-Symbol
15° | 18°°C 1 mm 100% 11 mph 88 % 1009 mb 0 mm/h
Mo. Juli 07 10:00 pm
Wetter-Symbol
13° | 16°°C 1 mm 100% 11 mph 87 % 1012 mb 0 mm/h
Today 7:00 am
Wetter-Symbol
12° | 13°°C 0 mm 0% 4 mph 68 % 1026 mb 0 mm/h
Today 10:00 am
Wetter-Symbol
16° | 18°°C 0 mm 0% 4 mph 54 % 1027 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
24° | 24°°C 0 mm 0% 5 mph 28 % 1028 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
25° | 25°°C 0 mm 0% 6 mph 22 % 1026 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
21° | 21°°C 0 mm 0% 12 mph 25 % 1025 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
20° | 20°°C 0 mm 0% 10 mph 37 % 1027 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
17° | 17°°C 0 mm 0% 7 mph 46 % 1028 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
15° | 15°°C 0 mm 0% 5 mph 57 % 1028 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€92,293.92
2.54%
Ethereum(ETH)
€2,175.60
5.67%
Fesseln(USDT)
€0.85
0.03%
XRP(XRP)
€1.91
3.05%
Solana(SOL)
€130.26
3.46%
USDC(USDC)
€0.85
0.00%
Dogecoin(DOGE)
€0.143407
6.07%
Shiba Inu(SHIB)
€0.000010
4.85%
Pepe(PEPE)
€0.000008
9.40%
Nach oben scrollen