You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
ze3tar.github.io
You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
1–10 of 152 posts
Re: You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
#2Another one.
Linux is falling apart faster than it can assign these CVEs.
Re: You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
#3io-uring is a security nightmare. Constant privescs and a powerful primitive for syscall smuggling. Worth considering disabling it outright (already the case for most containers afaik).
Re: You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
#4Another one. Linux is falling apart faster than it can assign these CVEs.
How's BSD doing?
How about Amazon Linux?
Re: You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
#5What is happening? I see multiple outages and CVEs is being reported on HN's front page. I've never seen these many security/incident related posts on HN's front page.
Re: You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
#6What is happening? I see multiple outages and CVEs is being reported on HN's front page. I've never seen these many security/incident related posts on HN's front page.
AI is happening.
Re: You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
#7Re: You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
#8Re: You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
#9What is happening? I see multiple outages and CVEs is being reported on HN's front page. I've never seen these many security/incident related posts on HN's front page.
Some combination of reporting bias given concerns about LLM security capabilities and actual new vulnerabilities found with LLM assistance. Even if exploits and outages are unrelated to LLMs, I'm certainly thinking about whether claude could build these things (or if actors already have).
Re: You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)
#10What is happening? I see multiple outages and CVEs is being reported on HN's front page. I've never seen these many security/incident related posts on HN's front page.
Automated vulnerability discovery via LLM.