[dba-Tech] Linux flaw allows bypassing password

Jim Lawrence accessd at shaw.ca
Wed Nov 16 15:20:57 CST 2016


Hi John:

That has been the case...rightly or wrongly for a while but depending on how a user has been managing their updates, the patch has been most likely, already installed. If an individual has an odd older, non supported version of Linux, there is a single line of code that solves the issue.

In this business the rule of always keeping your patches updated. 

Jim

PS Tested three machines and they were either patched or not vulnerable.
 
----- Original Message -----
From: "John R Bartow" <jbartow at winhaven.net>
To: "Discussion of Hardware and Software issues" databaseadvisors.com>
Sent: Wednesday, November 16, 2016 9:43:06 AM
Subject: [dba-Tech] Linux flaw allows bypassing password

A hacker with little more than a minute can bypass the authentication
procedures on some Linux systems just by holding down the Enter key for
around 70 seconds.

 

http://thehackernews.com/2016/11/hacking-linux-system.html?utm_source=feedbu
rner
<http://thehackernews.com/2016/11/hacking-linux-system.html?utm_source=feedb
urner&utm_medium=feed&utm_campaign=Feed%3A+TheHackersNews+%28The+Hackers+New
s+-+Security+Blog%29&_m=3n.009a.1367.kp0aof74zx.sxy>
&utm_medium=feed&utm_campaign=Feed%3A+TheHackersNews+%28The+Hackers+News+-+S
ecurity+Blog%29&_m=3n.009a.1367.kp0aof74zx.sxy

 

http://tinyurl.com/z87jtll

 

_______________________________________________
dba-Tech mailing list
dba-Tech at databaseadvisors.com
http://databaseadvisors.com/mailman/listinfo/dba-tech
Website: http://www.databaseadvisors.com


More information about the dba-Tech mailing list