Who thought it was remotely acceptable for cryptsetup initramfs to have any "dropping to a shell" code path!?! http://hmarco.org/bugs/CVE-2016-4484/CVE-2016-4484_cryptsetup_initrd_shell.html …
It's root from keyboard at boot time with no hardware tampering. That's pretty serious.
-
-
I'd still argue that if you have physical access, writing a new boot system to the disk is probably easier and better. I'm
- End of conversation
New conversation -
-
-
sure that isn't always a problem either, but I think it's easier to overlook, and those problems are often more serious.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
it is, but I can't help but wonder why such a system even has access to these things in the first place? However -
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.