‘CrackArmor’ Vulnerability in AppArmor Impacts 12.6M Linux Systems
ID: 3af3644e-95b7-5543-87b9-8fd5f227f99e
STIX ID: report--3af3644e-95b7-5543-87b9-8fd5f227f99e
Feed Name: HackRead
Threat Score
Qualys disclosed nine serious AppArmor vulnerabilities (present since v4.11 / 2017) that enable a "confused deputy" attack allowing low-privileged actors to trick privileged components into performing dangerous actions, potentially leading to root access, container escapes, and DoS; the flaws may affect over 12.6 million enterprise systems including critical infrastructure, and vendors coordinated fixes though no CVEs had been published at the time of the report.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
