{"id":181796,"date":"2026-05-29T14:48:11","date_gmt":"2026-05-29T12:48:11","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/cifswitch-uyazvimost-v-cifs-podsisteme-yadra-linux-pozvolyayushhaya-poluchit-prava-root"},"modified":"2026-05-29T14:48:11","modified_gmt":"2026-05-29T12:48:11","slug":"cifswitch-uyazvimost-v-cifs-podsisteme-yadra-linux-pozvolyayushhaya-poluchit-prava-root","status":"publish","type":"post","link":"https:\/\/prohoster.info\/de\/blog\/novosti-interneta\/cifswitch-uyazvimost-v-cifs-podsisteme-yadra-linux-pozvolyayushhaya-poluchit-prava-root","title":{"rendered":"CIFSwitch \u2014 eine Schwachstelle im CIFS-Subsystem des Linux-Kernels, die es erm\u00f6glicht, Root-Rechte zu erlangen.","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Details wurden ver\u00f6ffentlicht und ein Exploit f\u00fcr die Schwachstelle CIFSwitch (CVE noch nicht zugewiesen) im CIFS-Kernelmodul und im cifs-utils-Toolkit, der es einem nicht privilegierten Benutzer erm\u00f6glicht, Root-Rechte im System zu erlangen. Ein Fix ist nur als Patch verf\u00fcgbar, der am 16. Mai ver\u00f6ffentlicht und am 19. Mai in den Hauptzweig des Linux-Kernels aufgenommen wurde (korrektive Kernel-Versionen sind noch nicht verf\u00fcgbar). <\/p>\n<p>Die Schwachstelle betrifft den Code, der die Unterst\u00fctzung des cifs.spnego-Mechanismus f\u00fcr die Authentifizierung \u00fcber das SPNEGO-Protokoll (Simple and Protected GSSAPI Negotiation) beim Verbinden mit SMB-Servern gew\u00e4hrleistet. Bei der Verwendung von cifs.spnego zur Ermittlung von Schl\u00fcsseln aus Kerberos\/SPNEGO ruft der Kernel den cifs.upcall-Handler auf, der vom cifs-utils-Paket bereitgestellt wird und im Benutzermodus mit Root-Rechten ausgef\u00fchrt wird. <\/p>\n<p>Ein nicht privilegierter Benutzer kann den Handler initiieren, indem er eine Anfrage sendet, die den Schl\u00fcssel &#171;cifs.spnego&#187; anfordert, mit einer gef\u00e4lschten Beschreibung &#171;CIFS SPNEGO&#187;. Im Handler cifs.upcall werden keine zus\u00e4tzlichen \u00dcberpr\u00fcfungen der Parameter durchgef\u00fchrt, die \u00fcber den Kernel \u00fcbergeben werden, unter anderem werden die Werte der Felder pid, uid, creduid als vertrauensw\u00fcrdig angesehen und<br \/>\n  upcall_target akzeptiert. Nach der Aktivierung wechselt der Handler cifs.upcall in die Namensr\u00e4ume des Benutzerprozesses, \u00fcber den die Anfrage gesendet wurde, und sucht, bis die Privilegien zur\u00fcckgesetzt werden, in der Systemdatenbank NSS (Name Service Switch).<\/p>\n<p>Ein Angreifer kann seinen Prozess in einem separaten Namensraum f\u00fcr Einh\u00e4ngepunkte starten, was dazu f\u00fchrt, dass die Anfrage an NSS in seinem Kontext ausgef\u00fchrt wird. Um die Schwachstelle auszunutzen, gen\u00fcgt es, eine eigene Konfigurationsdatei \/etc\/nsswitch.conf und eine Reihe von gef\u00e4lschten Bibliotheken libnss_*.so.2 innerhalb der vom Angreifer erstellten Umgebung abzulegen. Die Ausf\u00fchrung einer NSS-Anfrage durch den Handler cifs.upcall f\u00fchrt dazu, dass die vom Angreifer eingef\u00fcgten Bibliotheken mit Root-Rechten geladen werden.<\/p>\n<p>Um die Schwachstelle auszunutzen, muss die Erstellung von Benutzernamensr\u00e4umen (user namespace) oder von Mount-Namensr\u00e4umen (mount namespace) erlaubt sein, und das Paket cifs-utils muss auf dem System installiert sein. Distributionen, bei denen die Schwachstelle in der Standardkonfiguration ausgenutzt werden kann:<\/p>\n<ul>\n<li> Linux Mint Cinnamon 21.3\/22.3\n<li> CentOS Stream 9 GNOME\n<li> Rocky Linux 9 Workstation\n<li> Kali Linux\n<li> AlmaLinux 9.7 Workstation\n<li> SUSE 15 SP7\/SAP 15 SP7\/SAP 16\n<\/ul>\n<p>Distributionen, bei denen zur Ausf\u00fchrung des Exploits das Paket cifs-utils installiert werden muss: <\/p>\n<ul>\n<li> Ubuntu 18.04\/20.04\/22.04 Desktop\/Server\n<li> Pop!_OS 22.04 Intel\/24.04 Generic\n<li> Ubuntu 24.04 Desktop minimal\/full und Server\n<li> Debian 11\/12\/13 netinst standard und GNOME\/KDE\/standard\/XFCE\n<li> CentOS Stream 9 Cinnamon\/KDE\/MATE\/XFCE\n<li> Rocky Linux 9 KDE\/Workstation-Lite\n<li> openSUSE Leap 15.6 GNOME\/KDE\n<li> openSUSE Tumbleweed GNOME\/KDE\n<li> Rocky Linux 8 GenericCloud\n<li> Oracle Linux 8\/9 <a class=\"wpil_keyword_link\" href=\"https:\/\/prohoster.info\/de\/vps\/abuzoustojchivye-vps\/\" title=\"KVM\" data-wpil-keyword-link=\"linked\">KVM<\/a>\n<li> Amazon Linux 2023 KVM\n<\/ul>\n<p>Distributionen, bei denen in der Standardkonfiguration Einstellungen angewendet werden, die die Ausnutzung der Schwachstelle durch SELinux oder Apparmor blockieren, selbst wenn das Paket cifs-utils vorhanden ist: <\/p>\n<ul>\n<li> Ubuntu 26.04 Desktop\/Server\n<li> Fedora 40\/41\/42\/43\/44 Workstation\/Server\n<li> CentOS Stream 10 GNOME\/KDE\n<li> Rocky Linux 10 Workstation\n<li> AlmaLinux 10.1 Workstation\n<li> Oracle Linux 10 KVM\n<li> openSUSE Tumbleweed GNOME\/KDE\n<li> openSUSE Leap 16.0 OEM GNOME\/KDE\/Minimal-VM\n<li> SUSE Linux 16\n<\/ul>\n<p>Als Umgehungsschutz kann das automatische Laden des cifs-Kernelmoduls blockiert werden:<\/p>\n<p>   sh -c &#171;printf &#8216;install cifs \/bin\/false&#092;n&#8217; &gt; \/etc\/modprobe.d\/cifs.conf; rmmod cifs 2&gt;\/dev\/null; true&#187;<\/p>\n<p>Es kann auch die Nutzung des user namespace verboten werden (&#171;sysctl -w kernel.unprivileged_userns_clone=0&#187;) und die Regel cifs.spnego in den Einstellungen von cifs-utils entfernt oder \u00fcberschrieben werden:<\/p>\n<p>    cat &gt;\/etc\/request-key.d\/cifs.spnego.conf &lt;&#8216;EOF&#8217;<br \/>\n    create cifs.spnego * * \/usr\/sbin\/keyctl negate %k 30 %S<br \/>\n    EOF<\/p>\n<p>In der Zwischenzeit wurden am 28. Mai 137 Berichte \u00fcber Schwachstellen im Linux-Kernel ver\u00f6ffentlicht, und am 27. Mai - 277 Berichte.<br \/>\n<br \/>Quelle: <a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=65572\">opennet.ru<\/a> <\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0420\u0430\u0441\u043a\u0440\u044b\u0442\u044b \u0434\u0435\u0442\u0430\u043b\u0438 \u0438 \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442 \u0434\u043b\u044f \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 CIFSwitch (CVE \u043f\u043e\u043a\u0430 \u043d\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d) \u0432 \u043c\u043e\u0434\u0443\u043b\u0435 \u044f\u0434\u0440\u0430 CIFS \u0438 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u0438 cifs-utils, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0435\u0439 \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c \u043f\u0440\u0430\u0432\u0430 root \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u0418\u0441\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0435 \u0434\u043e\u0441\u0442\u0443\u043f\u043d\u043e \u0442\u043e\u043b\u044c\u043a\u043e \u0432 \u0432\u0438\u0434\u0435 \u043f\u0430\u0442\u0447\u0430, \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d 16 \u043c\u0430\u044f \u0438 19 \u043c\u0430\u044f \u0431\u044b\u043b \u043f\u0440\u0438\u043d\u044f\u0442 \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u0443\u044e \u0432\u0435\u0442\u043a\u0443 \u044f\u0434\u0440\u0430 Linux (\u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u0432\u044b\u043f\u0443\u0441\u043a\u0438 \u044f\u0434\u0440\u0430 \u0435\u0449\u0451 \u043d\u0435\u0434\u043e\u0441\u0442\u0443\u043f\u043d\u044b). \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u0435\u0442 \u043a\u043e\u0434, [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":8,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-181796","post","type-post","status-publish","format-standard","hentry","category-novosti-interneta"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 4.9.10 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0420\u0430\u0441\u043a\u0440\u044b\u0442\u044b \u0434\u0435\u0442\u0430\u043b\u0438 \u0438 \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442 \u0434\u043b\u044f \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 CIFSwitch (CVE \u043f\u043e\u043a\u0430 \u043d\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d) \u0432 \u043c\u043e\u0434\u0443\u043b\u0435 \u044f\u0434\u0440\u0430 CIFS \u0438 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u0438 cifs-utils, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0435\u0439 \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c \u043f\u0440\u0430\u0432\u0430 root \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u0418\u0441\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0435 \u0434\u043e\u0441\u0442\u0443\u043f\u043d\u043e \u0442\u043e\u043b\u044c\u043a\u043e \u0432 \u0432\u0438\u0434\u0435 \u043f\u0430\u0442\u0447\u0430, \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d 16 \u043c\u0430\u044f \u0438 19 \u043c\u0430\u044f \u0431\u044b\u043b \u043f\u0440\u0438\u043d\u044f\u0442 \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u0443\u044e \u0432\u0435\u0442\u043a\u0443 \u044f\u0434\u0440\u0430 Linux (\u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u0432\u044b\u043f\u0443\u0441\u043a\u0438 \u044f\u0434\u0440\u0430 \u0435\u0449\u0451 \u043d\u0435\u0434\u043e\u0441\u0442\u0443\u043f\u043d\u044b). \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u0435\u0442 \u043a\u043e\u0434,\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Erik Peterson\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/de\/blog\/novosti-interneta\/cifswitch-uyazvimost-v-cifs-podsisteme-yadra-linux-pozvolyayushhaya-poluchit-prava-root\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 4.9.10\" \/>\n\t\t<meta property=\"og:locale\" content=\"de_DE\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47CIFSwitch \u2014 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 CIFS-\u043f\u043e\u0434\u0441\u0438\u0441\u0442\u0435\u043c\u0435 \u044f\u0434\u0440\u0430 Linux, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c \u043f\u0440\u0430\u0432\u0430 root | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0420\u0430\u0441\u043a\u0440\u044b\u0442\u044b \u0434\u0435\u0442\u0430\u043b\u0438 \u0438 \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442 \u0434\u043b\u044f \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 CIFSwitch (CVE \u043f\u043e\u043a\u0430 \u043d\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d) \u0432 \u043c\u043e\u0434\u0443\u043b\u0435 \u044f\u0434\u0440\u0430 CIFS \u0438 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u0438 cifs-utils, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0435\u0439 \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c \u043f\u0440\u0430\u0432\u0430 root \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u0418\u0441\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0435 \u0434\u043e\u0441\u0442\u0443\u043f\u043d\u043e \u0442\u043e\u043b\u044c\u043a\u043e \u0432 \u0432\u0438\u0434\u0435 \u043f\u0430\u0442\u0447\u0430, \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d 16 \u043c\u0430\u044f \u0438 19 \u043c\u0430\u044f \u0431\u044b\u043b \u043f\u0440\u0438\u043d\u044f\u0442 \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u0443\u044e \u0432\u0435\u0442\u043a\u0443 \u044f\u0434\u0440\u0430 Linux (\u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u0432\u044b\u043f\u0443\u0441\u043a\u0438 \u044f\u0434\u0440\u0430 \u0435\u0449\u0451 \u043d\u0435\u0434\u043e\u0441\u0442\u0443\u043f\u043d\u044b). \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u0435\u0442 \u043a\u043e\u0434,\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/de\/blog\/novosti-interneta\/cifswitch-uyazvimost-v-cifs-podsisteme-yadra-linux-pozvolyayushhaya-poluchit-prava-root\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-05-29T12:48:11+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-05-29T12:48:11+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47CIFSwitch \u2014 eine Schwachstelle im CIFS-Kernsubsystem von Linux, die root-Rechte erm\u00f6glicht | ProHoster","description":"Details und ein Exploit f\u00fcr die Schwachstelle CIFSwitch (CVE noch nicht zugewiesen) im CIFS-Kernelmodul und den cifs-utils Tools wurden ver\u00f6ffentlicht, die es einem nicht privilegierten Benutzer erm\u00f6glichen, root-Rechte im System zu erlangen. Der Fix ist nur als Patch verf\u00fcgbar, der am 16. Mai ver\u00f6ffentlicht wurde und am 19. Mai in den Hauptzweig des Linux-Kernels aufgenommen wurde (Korrekturausgaben des Kernels sind noch nicht verf\u00fcgbar). Die Schwachstelle betrifft den Code,","canonical_url":"https:\/\/prohoster.info\/de\/blog\/novosti-interneta\/cifswitch-uyazvimost-v-cifs-podsisteme-yadra-linux-pozvolyayushhaya-poluchit-prava-root","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"de_DE","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47CIFSwitch \u2014 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 CIFS-\u043f\u043e\u0434\u0441\u0438\u0441\u0442\u0435\u043c\u0435 \u044f\u0434\u0440\u0430 Linux, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c \u043f\u0440\u0430\u0432\u0430 root | ProHoster","og:description":"\u0420\u0430\u0441\u043a\u0440\u044b\u0442\u044b \u0434\u0435\u0442\u0430\u043b\u0438 \u0438 \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442 \u0434\u043b\u044f \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 CIFSwitch (CVE \u043f\u043e\u043a\u0430 \u043d\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d) \u0432 \u043c\u043e\u0434\u0443\u043b\u0435 \u044f\u0434\u0440\u0430 CIFS \u0438 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u0438 cifs-utils, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0435\u0439 \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c \u043f\u0440\u0430\u0432\u0430 root \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u0418\u0441\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u0435 \u0434\u043e\u0441\u0442\u0443\u043f\u043d\u043e \u0442\u043e\u043b\u044c\u043a\u043e \u0432 \u0432\u0438\u0434\u0435 \u043f\u0430\u0442\u0447\u0430, \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043d 16 \u043c\u0430\u044f \u0438 19 \u043c\u0430\u044f \u0431\u044b\u043b \u043f\u0440\u0438\u043d\u044f\u0442 \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u0443\u044e \u0432\u0435\u0442\u043a\u0443 \u044f\u0434\u0440\u0430 Linux (\u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u0432\u044b\u043f\u0443\u0441\u043a\u0438 \u044f\u0434\u0440\u0430 \u0435\u0449\u0451 \u043d\u0435\u0434\u043e\u0441\u0442\u0443\u043f\u043d\u044b). \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u0435\u0442 \u043a\u043e\u0434,","og:url":"https:\/\/prohoster.info\/de\/blog\/novosti-interneta\/cifswitch-uyazvimost-v-cifs-podsisteme-yadra-linux-pozvolyayushhaya-poluchit-prava-root","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2026-05-29T12:48:11+00:00","article:modified_time":"2026-05-29T12:48:11+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":[],"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/181796","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/comments?post=181796"}],"version-history":[{"count":1,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/181796\/revisions"}],"predecessor-version":[{"id":182094,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/181796\/revisions\/182094"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/media?parent=181796"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/categories?post=181796"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/tags?post=181796"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}