Port 22

Looney Tunables: New Linux Flaw Enables Privilege Escalation on Major Distributions

A new Linux security vulnerability dubbed Looney Tunables has been discovered in the GNU C library’s ld.so dynamic loader that, if successfully exploited, could lead to a local privilege escalation and allow a threat actor to gain root privileges. Tracked asCVE-2023-4911(CVSS score: 7.8), the issue is a buffer overflow that resides in the dynamic loader’s processing of theGLIBC_TUNABLES