Nimbuspwn Linux Vulnerability | CVE-2022-29799 | CVE-2022-29800

Опубликовано: 05 Октябрь 2024
на канале: Lansweeper
1,936
14

Linux Vulnerability "Nimbuspwn" contains CVE-2022-29799 and CVE-2022-29800 vulnerabilities that when combined can allow attackers to gain root access. Use Lansweeper to get a list of affected devices on your network ► https://www.lansweeper.com/vulnerabil...

CVE-2022-29799 and CVE-2022-29800 dubbed "Nimbuspwn" are two vulnerabilities that, when combined can allow attackers to gain root access, allowing them to do anything from deploying packages, execute code, install ransomware, and more. The vulnerabilities lie in the the networkd-dispatcher package. A part of the systemd component that is responsible for dispatching network status changes. You can read more about the vulnerability in the Nimbuspwn blog post.

"This constant bombardment of attacks spanning a wide range of platforms, devices, and other domains emphasizes the need for a comprehensive and proactive vulnerability management approach that can further identify and mitigate even previously unknown exploits and issues." Microsoft said.