National Cyber Warfare Foundation (NCWF)

New Linux Flaws Allow Password Hash Theft via Core Dumps in Ubuntu, RHEL, Fedora


0 user ratings
2025-05-31 10:27:03
milo
Blue Team (CND)
Two information disclosure flaws have been identified in apport and systemd-coredump, the core dump handlers in Ubuntu, Red Hat Enterprise Linux, and Fedora, according to the Qualys Threat Research Unit (TRU).
Tracked as CVE-2025-5054 and CVE-2025-4598, both vulnerabilities are race condition bugs that could enable a local attacker to obtain access to access sensitive information. Tools like



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/05/new-linux-flaws-allow-password-hash.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.