• Eager Eagle@lemmy.world
    link
    fedilink
    English
    arrow-up
    18
    ·
    edit-2
    1 month ago

    wtf

    An unprivileged local user can write 4 controlled bytes into the page cache of any readable file on a Linux system, and use that to gain root.

    If your kernel was built between 2017 and the patch — which covers essentially every mainstream Linux distribution — you’re in scope.

    how does that only get a CVE score of 7.8, the impact of this is huge