> IT-Sentinel.com

// Cybersecurity & IT News Aggregator - Real-time Threat Intelligence Feed

NEWS CVE
← messages.back_to_articles

> Readline crime: exploiting a SUID logic bug

[SOURCE] Trail of Bits [DATE: 16/02/2023 13:00] [LANGUAGE: EN]
I discovered a logic bug in the readline dependency that partially reveals file information when parsing the file specified in the INPUTRC environment variable. This could allow attackers to move laterally on a box where sshd is running, a given user is able to login, and the user’s private key […]
[messages.read_original_source] →