nov dan, nov linux bug. katerikoli user lahko bere poljubne fajle ko jih odpre kak suid binary. arch, gentoo, debian13 itd affected. mitigation: chmod o-rwx /proc && sysctl user.max_user_namespaces=0 by me, possibly can be bypassed, definitely breaks stuff. poc: https://github.com/0xdeadbeefnetwork/ssh-keysign-pwn boljši mitigation je samo odstraniti suid bit spornim binaryjem. no patched kernel released yet. dinos pomeni dajmo industriji nazaj odpadne surovine ne nastavit proxmox spice qxl driverja (default i think) na arch linux pod hardware->display ker bo qxl v kernelu hangal in povzročal grozne nevšečnosti. men dela virtio-gpu. komad za tuš: https://genius.com/Hiljson-mandela-and-miach-aneo-lyrics komad za spanje: https://www.muzika.hr/neno-belan-fiumens-feat-ljetno-kino-ulicama-grada/