跳至内容
Advertisement

使用 AI 扫描帮助发现严重的 Linux 复制失败安全漏洞

自 2017 年以来发布的几乎所有 Linux 发行版目前都容易受到名为“复制失败”的安全漏洞的影响,该漏洞允许任何用户授予自己管理员权限。该漏洞周三公开披露为 CVE-2026-31431,使用...

schedule 16:55 visibility 61 浏览
使用 AI 扫描帮助发现严重的 Linux 复制失败安全漏洞
来源: The Verge
Devil face on a computer motherboard.

Nearly every Linux distribution released since 2017 is currently vulnerable to a security bug called "Copy Fail" that allows any user to give themselves administrator privileges. The exploit, publicly disclosed as CVE-2026-31431 on Wednesday, uses a Python script that works across all of the vulnerable Linux distributions, requiring "no per-distro offsets, no version checks, no recompilation," according to Theori, the security firm that uncovered it.

Ars Technica points out this blog post where DevOps engineer Jorijn Schrijvershof explains that what makes Copy Fail "unusually nasty" is the likelihood for it to go unnoticed by monitoring t …

Read the full story at The Verge.

newspaper

原文发布于

The Verge

open_in_new 阅读全文