• Some users have recently had their accounts hijacked. It seems that the now defunct EVGA forums might have compromised your password there and seems many are using the same PW here. We would suggest you UPDATE YOUR PASSWORD and TURN ON 2FA for your account here to further secure it. None of the compromised accounts had 2FA turned on.
    Once you have enabled 2FA, your account will be updated soon to show a badge, letting other members know that you use 2FA to protect your account. This should be beneficial for everyone that uses FSFT.

Kinda big yet entertainingly named Linux exploit announced

It is "only" privilege escalation. To use this vulnerability you first need to break into a normal user account, then you can escalate to root without permission to do so.

So unless you are in a true multi-user environment you first need another exploit first to get into that normal user account.
 
Doesn't it also say "local" attacker? I'm assuming this means you have physical access to it, or are they using that term to also refer to a logged in SSH account? If it is completely local... yeah I'm sure there are plenty of exploits that one can do locally...

No, remote login enables this problem. You don't have to be physically present.
 
Back
Top