English

Critical vulnerability of linux and unix systems

Linux and Unix systems at risk

If you use Sudo within administration of your linux or unix systems, be careful and upgrade it as soon as possible

The Sudo is very popular tool within system administration for grant specific user rights. It could be used in Nginx, Apache and at least but not last Ansible uses this command a lot. The critical vulnerability has been found in this tool, which allows any local users to gain root access without authentication. The bug was named as CVE-2019–18634.

Version 1.8.31 includes a fix, however the abuse is not possible from version 1.8.26. How to upgrade this tool on the specific linux distributions, you can find at https://www.dade2.net/critical-bug-in-sudo-puts-linux-and-unix-systems-at-risk/.

Do not risk and be safe not only within systems.

Coolhousing team

Best articles

storage boxes for server components
AMD server Supermicro
Cooling system with freecooling technology in the server room