Kategorie: Allgemein

Hintertür in xz-Bibliothek gefährdet SSH-Verbindungen

Der Angriff wurde offenbar von langer Hand geplant. Ein möglicherweise staatlicher Akteur versteckte eine Backdoor in der liblzma-Bibliothek.

CVE-2023-28746 Intel: CVE-2023-28746 Register File Data Sampling (RFDS)

This CVE was assigned by Intel. Please see [CVE-2023-28746](https://www.cve.org/CVERecord?id=CVE-2023-28746) on CVE.org for more information.

CVE-2024-21626 GitHub: CVE-2024-21626 Container breakout through process.cwd trickery and leaked fds

Microsoft is announcing that the Azure Kubernetes Service security updates released on 31 January 2024 include runc updates, which addresses this vulnerability. Microsoft recommends that customers install the 31 January 2024 updates to ensure they have the most up-to-date version of Azure Kubernetes Service.