Your browser does not seem to support JavaScript. As a result, your viewing experience will be diminished, and you have been placed in read-only mode.
Please download a browser that supports JavaScript, or enable it if it's disabled (i.e. NoScript).
Hi there,
there is a major security incident for all glibc based linux distros:
https://blog.qualys.com/vulnerabilities-threat-research/2023/10/03/cve-2023-4911-looney-tunables-local-privilege-escalation-in-the-glibcs-ld-so
Update asap where possible
Best, Mike
As far as I understand its related to the env variable GLIBC_TUNABLES which I don't think its used on Cloudron anywhere, but also had never heard of it before. I checked a few Cloudrons and its not present at least.
GLIBC_TUNABLES