The central voice for Linux and Open Source security news.
Përditësimi: 2 orë 50 min më parë
Enj, 17/09/2026 - 9:58pd
A Linux path can be valid when a program checks it and point somewhere else when the program uses it. That gap creates a time-of-check to time-of-use, or TOCTOU race condition, whenever an untrusted process can change part of the directory tree between two separate lookups.
Enj, 17/09/2026 - 3:15pd
Linux file permissions are usually introduced as a way to decide who may read, write, or execute a file. On a production server, they do something more important: they help decide which lower-privilege users can influence work later performed by root or another privileged service.
Enj, 17/09/2026 - 2:15pd
Docker has fixed a high-severity Docker Sandboxes vulnerability that allowed a malicious guest to redirect a host-side relay toward Unix sockets outside its authorized workspace. The flaw, CVE-2026-79994, broke a guest-to-host trust boundary even though the sandbox itself ran inside a separate microVM.
Enj, 17/09/2026 - 1:45pd
Acronis has fixed a high-severity vulnerability in its Linux hosting backup integrations after detecting exploitation in limited, targeted attacks. The Acronis backup flaw, tracked as CVE-2026-87886, lets a low-privileged local user increase privileges on a vulnerable server because of insecure file permissions.
Mër, 16/09/2026 - 12:31md
Container security can fail before a workload fully enters its root filesystem, the private file tree the container is meant to see.
Mër, 16/09/2026 - 12:22md
SMB, or Server Message Block, lets Linux systems access files shared over a network.
Mër, 16/09/2026 - 12:16md
Transparent huge pages let Linux manage memory in larger blocks for better performance.
Mër, 16/09/2026 - 12:07md
eBPF lets verified programs run inside the Linux kernel. Linux eBPF security depends on supporting data remaining available for as long as those programs can use it.
Faqet