https://www.zdnet.com/article/linux-network-security-holes-found-fixed/ * Edition: + Asia + Australia + Europe + India + United Kingdom + United States + ZDNet around the globe: + ZDNet France + ZDNet Germany + ZDNet Korea + ZDNet Japan Search What are you looking for? [ ] Go * Videos * Windows 10 * 5G * Best VPNs * Cloud * Security * AI * more + TR Premium + Working from Home + Innovation + Best Web Hosting + ZDNet Recommends + Tonya Hall Show + Executive Guides + ZDNet Academy + See All Topics + White Papers + Downloads + Reviews + Galleries + Videos + TechRepublic Forums * Newsletters * All Writers * + Preferences + Community + Newsletters + Log Out * * + What are you looking for? [ ] Go * Menu + Videos + Windows 10 + 5G + Best VPNs + Cloud + Security + AI + TR Premium + Working from Home + Innovation + Best Web Hosting + ZDNet Recommends + Tonya Hall Show + Executive Guides + ZDNet Academy + See All Topics + White Papers + Downloads + Reviews + Galleries + Videos + TechRepublic Forums * * + o Preferences o Community o Newsletters o Log Out * us + Asia + Australia + Europe + India + United Kingdom + United States + ZDNet around the globe: + ZDNet France + ZDNet Germany + ZDNet Korea + ZDNet Japan High severity Linux network security holes found, fixed This nasty set of bugs can lead to an attacker gaining root access, but the patch is already available. * * * * * * * * Steven J. Vaughan-Nichols By Steven J. Vaughan-Nichols | March 3, 2021 -- 21:33 GMT (13:33 PST) | Topic: Security Young and rising Linux security developer Alexander Popov of Russia's Positive Technologies discovered and fixed a set of five security holes in the Linux kernel's virtual socket implementation. An attacker could use these vulnerabilities (CVE-2021-26708) to gain root access and knock out servers in a Denial of Service (DoS) attack. ZDNet Recommends The best Linux Foundation classes The best Linux Foundation classes Want a good tech job? Then you need to know Linux and open-source software. One of the best ways to pick them up is via a Linux Foundation course. Read More With a Common Vulnerability Scoring System (CVSS) v3 base score of 7.0, high severity, smart Linux administrators will patch their systems as soon as possible. While Popov discovered the bugs in Red Hat's community Linux distribution Fedora 33 Server, it exists in the system using the Linux kernel from November 2019's version 5.5 to the current mainline kernel version 5.11-rc6. These holes entered Linux when virtual socket multi-transport support was added. This networking transport facilitates communication between virtual machines (VM) and their host. It's commonly used by guest agents and hypervisor services that need a communications channel that is independent of the VM network configuration. As such, people who are running VMs on the cloud, which is pretty much everyone these days, are especially vulnerable. The core problem is race conditions in the CONFIG_VSOCKETS and CONFIG_VIRTIO_VSOCKETS kernel drivers. These are shipped as kernel modules in all major Linux distributions. The reason why this is such a serious problem is whenever an ordinary user creates an AF_VSOCK socket, the vulnerable modules are automatically loaded. A race condition exists when a system's substantive behavior depends on the sequence or timing of uncontrollable events. Popov said, "I successfully developed a prototype exploit for local privilege escalation on Fedora 33 Server, bypassing x86_64 platform protections such as SMEP and SMAP. This research will lead to new ideas on how to improve Linux kernel security." In the meantime, Popov also prepared the patch and revealed the vulnerabilities to the Linux kernel security team. Greg Kroah-Hartman, the stable Linux kernel chief maintainer, accepted the patches into Linux 5.10.13 on February 3. Since then the patch has been merged into mainline kernel version 5.11-rc7 and backported into affected stable trees. The patch has also already been incorporated into such popular Linux distributions as Red Hat Enterprise Linux (RHEL) 8, Debian, Ubuntu, and SUSE. This is far from the first time Popov discovered and fixed Linux kernel vulnerabilities. Previously, he's found and repaired CVE-2019-18683 and CVE-2017-2636. Keep up the good work, Popov! Related Stories: * Google funds Linux kernel developers to work exclusively on security * Linux Mint may start pushing high-priority patches to users * Secure to the core: IoT Ubuntu Core Linux 20 released Related Topics: Cloud Security TV Data Management CXO Data Centers * * * * * * * * Steven J. Vaughan-Nichols By Steven J. Vaughan-Nichols | March 3, 2021 -- 21:33 GMT (13:33 PST) | Topic: Security Show Comments LOG IN TO COMMENT * My Profile * Log Out | Community Guidelines Join Discussion Add Your Comment Add Your Comment More from Steven J. Vaughan-Nichols * [][open-source1] Cloud Red Hat's survey results on the state of enterprise open-source software * [][risc-v] Hardware Linux Foundation and RISC-V International launch free RISC-V training classes * [][screen-shot-2021-03-02-] Security Linux Mint may start pushing high-priority patches to users * [][solarwinds-orion] Security SolarWinds security fiasco may have started with simple password blunders Please review our terms of service to complete your newsletter subscription. [ ] By registering, you agree to the Terms of Use and acknowledge the data practices outlined in the Privacy Policy. You will also receive a complimentary subscription to the ZDNet's Tech Update Today and ZDNet Announcement newsletters. You may unsubscribe from these newsletters at any time. [ ] You agree to receive updates, alerts, and promotions from the CBS family of companies - including ZDNet's Tech Update Today and ZDNet Announcement newsletters. You may unsubscribe at any time. By signing up, you agree to receive the selected newsletter(s) which you may unsubscribe from at any time. You also agree to the Terms of Use and acknowledge the data collection and usage practices outlined in our Privacy Policy. Continue Newsletters See All See All Related Stories * 1 of 3 * * [][screenshot-2021-03-03-a] Ursnif Trojan has targeted over 100 Italian banks 1,700 credentials were stolen from a single payment processor. * [][internet-privacy-thumb] Google takes next steps towards 'privacy-first' web devoid of third-party cookies US tech giant will release its Federated Learning of Cohorts for developer trials this month and advertiser tests with Google Ads next quarter, during which it hopes to glean insights ... * [][screenshot-2021-03-03-a] Microsoft account hijack vulnerability earns bug bounty hunter $50,000 The researcher says he could have abused the bug to hijack Microsoft accounts. * [][screenshot-2021-03-03-a] Google patches actively exploited Chrome browser zero-day vulnerability Upgrading your Chrome build as quickly as possible is recommended. * [][developeristock-1204373] Microsoft: These Exchange Server zero-day flaws are being used by hackers, so update now Hafnium state-sponsored threat actor was exploiting four previously unknown flaws in Exchange servers. * [][screenshot-2021-03-03-a] SEC charges group for alleged pump-and-dump Airborne Wireless stock scam SEC claims investors were defrauded out of $45 million. * [][man-looking-sad-because] This dangerous ransomware is using a new trick to encrypt your network Ryuk ransomware now has the ability to use a worm-like capability to spread itself to any Windows machine on the same network as the initial compromise, warns cybersecurity agency. ... * [][istock-1134890323] New app rollout helps reduce paperwork for NSW frontline child protection caseworkers The ChildStory Mobile will give caseworkers access to real-time information on-the-go. * [][screen-shot-2021-03-02-] Linux Mint may start pushing high-priority patches to users In upcoming releases, Linux Mint developers may insist that users install some patches. ZDNet Connect with us (c) 2021 ZDNET, A RED VENTURES COMPANY. ALL RIGHTS RESERVED. Privacy Policy | Cookie Settings | Advertise | Terms of Use * Topics * Galleries * Videos * Sponsored Narratives * Do Not Sell My Information * About ZDNet * Meet The Team * All Authors * RSS Feeds * Site Map * Reprint Policy * Manage | Log Out * Join | Log In * Membership * Newsletters * Site Assistance * ZDNet Academy * TechRepublic Forums