Congratulations to @wdormann & @briankrebs on identifying this stunning bug https://kb.cert.org/vuls/id/498544/
- with a PoC tester that injects "/sbin/halt" to power off an affected device https://kb.cert.org/artifacts/cve-2020-9054.html … #CVE-2020-9054 PoC makes interesting reading, exploit is in rebootnas(); func.
Ah, but a VU# can be one or multiple vulnerabilities! So maybe I didn't break any rules? And if it's misinterpreted, I don't think I'll feel bad about it.
-
-
This Tweet is unavailable.
-
I saw Will and
@__adh__ last night and besides gossiping about our favorite metric, I got in a dig to SSVC as well :) - 2 more replies
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.