Cookie Consent by Free Privacy Policy Generator 📌 Linux Vulnerability “WallEscape” Leaves Users Exposed to Password Theft

🏠 Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeiträge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden Überblick über die wichtigsten Aspekte der IT-Sicherheit in einer sich ständig verändernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch übersetzen, erst Englisch auswählen dann wieder Deutsch!

Google Android Playstore Download Button für Team IT Security



📚 Linux Vulnerability “WallEscape” Leaves Users Exposed to Password Theft


💡 Newskategorie: Hacking
🔗 Quelle: blackhatethicalhacking.com

Linux Vulnerability “WallEscape” Leaves Users Exposed to Password Theft




Join our Patreon Channel and Gain access to 70+ Exclusive Walkthrough Videos.

Patreon
Reading Time: 3 Minutes

Linux Vulnerability Exposed: WallEscape Threatens Password Theft

A critical vulnerability in the ‘wall’ command of the util-linux package, dubbed WallEscape and tracked as CVE-2024-28085, has been discovered, posing a significant security risk to Linux users. This flaw, present in every version of the package for the past 11 years up to version 2.40, could potentially enable an unprivileged attacker to steal passwords or manipulate the victim’s clipboard.

The discovery of WallEscape by security researcher Skyler Ferrante sheds light on a critical issue. Exploiting this vulnerability could enable an unprivileged attacker to pilfer passwords or manipulate a victim’s clipboard. Although the potential for exploitation exists, it is notably constrained to specific scenarios.

To successfully exploit WallEscape, an attacker must first gain access to a Linux server with multiple users concurrently connected through the terminal. This setting is commonly found in institutions like universities, where numerous students might be logged in simultaneously for various academic tasks.

At the core of WallEscape lies an “improper neutralization of escape sequences in wall” command, as described by Ferrante. The vulnerability impacts the ‘wall’ command, typically utilized in Linux systems to broadcast messages to all users’ terminals on the same server.

 

See Also: So, you want to be a hacker?
Offensive Security, Bug Bounty Courses




Discover your weakest link. Be proactive, not reactive. Cybercriminals need just one flaw to strike.

WallEscape Exploit

The exploit leverages the improper filtering of escape sequences within command-line arguments. By injecting escape control characters, an attacker could fabricate a fake SUDO prompt on other users’ terminals, coercing them into divulging their administrator passwords.

Ferrante outlines specific conditions necessary for successful exploitation. Notably, the ‘mesg’ utility must be active, and the wall command must possess setgid permissions. While these conditions are met in certain distributions like Ubuntu 22.04 LTS and Debian 12.5, they are absent in others like CentOS.

Proof-of-concept exploit code has been made available, illustrating how attackers could capitalize on WallEscape. Ferrante also provides detailed exploitation scenarios, including one that involves crafting a counterfeit sudo prompt within the Gnome terminal to deceive users into disclosing sensitive information.

Additionally, the vulnerability report outlines a method to manipulate a target user’s clipboard through escape sequences. Although this tactic is not universally effective across all terminal emulators, it poses a significant risk to those employing susceptible environments.




...



📌 Linux Vulnerability “WallEscape” Leaves Users Exposed to Password Theft


📈 80.46 Punkte

📌 ‘WallEscape’ Linux Vulnerability Leaks User Passwords


📈 37.57 Punkte

📌 WallEscape-Schwachstelle CVE-2024-28085 in Linux-Tools


📈 34.33 Punkte

📌 Lena, XZ, WallEscape, AT&T, OWASP, Google, Microsoft, AI, Josh Marpet, and More - SWN #374


📈 31.84 Punkte

📌 Improper use of password managers leaves people vulnerable to identity theft


📈 29.64 Punkte

📌 Change your password! VoIP provider leaves huge database exposed online


📈 27.22 Punkte

📌 Change your password! VoIP provider leaves huge database exposed online


📈 27.22 Punkte

📌 Apple’s ‘Targeted’ Gatekeeper Bypass Patch Leaves OS X Users Exposed


📈 26.45 Punkte

📌 Apple’s ‘Targeted’ Gatekeeper Bypass Patch Leaves OS X Users Exposed


📈 26.45 Punkte

📌 Ticket Site Hack Leaves 26 Million Users Exposed


📈 26.45 Punkte

📌 ASUS Hack May Be Biggest Supply-Chain Incident Ever As Backdoor Leaves 1 Million Users Exposed


📈 26.45 Punkte

📌 Exposed Travis CI API Leaves All Free-Tier Users Open to Attack


📈 26.45 Punkte

📌 Massive breach leaves 267 million Facebook users' data exposed


📈 26.45 Punkte

📌 Massive leak leaves 267 million Facebook users' data exposed


📈 26.45 Punkte

📌 RailYatri Data Breach Leaves Over 30 Million Users Exposed


📈 26.45 Punkte

📌 Adult FriendFinder Vulnerability Leaves Millions Exposed


📈 24.43 Punkte

📌 Adult FriendFinder Vulnerability Leaves Millions Exposed


📈 24.43 Punkte

📌 5G network slicing vulnerability leaves enterprises exposed to cyberattacks


📈 24.43 Punkte

📌 5G network slicing vulnerability leaves enterprises exposed to cyberattacks


📈 24.43 Punkte

📌 Beeps, roots and leaves: Car-controlling Android apps create theft risk


📈 23.61 Punkte

📌 FatFace Cyberattack Leaves Shoppers Open To Identity Theft


📈 23.61 Punkte

📌 Why Rockstar Games' mistreatment of the series leaves me feeling utterly unexcited for Grand Theft Auto 6


📈 23.61 Punkte

📌 Grand Theft Auto V leaves Xbox Game Pass next month


📈 23.61 Punkte

📌 Vulnerability Leaves Container Images Without Password


📈 22.47 Punkte

📌 An unsecured database leaves off-the-grid energy customers exposed


📈 21.19 Punkte

📌 An unsecured database leaves off-the-grid energy customers exposed


📈 21.19 Punkte

📌 TeenSafe leaves children's data exposed, Google reportedly chasing AR video


📈 21.19 Punkte

📌 Spyware firm SpyFone leaves customer data, recordings exposed online


📈 21.19 Punkte

📌 Spyware Company Leaves ‘Terabytes’ of Selfies, Text Messages, and Location Data Exposed Online


📈 21.19 Punkte

📌 ANOTHER ISP Leaves Private Data Exposed On Amazon Cloud Server; Takes 7 Days To Correct Error


📈 21.19 Punkte

📌 Aws s3 server bucket misconfiguration leaves data of washington isp exposed.


📈 21.19 Punkte

📌 Samsung, Crucial’s Flawed Storage Drive Encryption Leaves Data Exposed


📈 21.19 Punkte

📌 Chinese company leaves Muslim-tracking facial recognition database exposed online


📈 21.19 Punkte

📌 New Intel chip flaw leaves your PC exposed again


📈 21.19 Punkte

📌 EA's Origin service leaves gamers exposed (The 3:59, Ep. 578) video


📈 21.19 Punkte











matomo