{"id":170106,"date":"2026-04-30T18:24:29","date_gmt":"2026-04-30T16:24:29","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov"},"modified":"2026-04-30T18:24:29","modified_gmt":"2026-04-30T16:24:29","slug":"copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov","status":"publish","type":"post","link":"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov","title":{"rendered":"Copy Fail \u2014 nj\u00eb dob\u00ebsi n\u00eb b\u00ebrtham\u00ebn Linux, e cila lejon qasje root n\u00eb shumic\u00ebn e shp\u00ebrndarjeve","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>K\u00ebrkuesit nga kompania Xint kan\u00eb zbuluar nj\u00eb vulnerabilitet n\u00eb b\u00ebrtham\u00ebn Linux (CVE-2026-31431), i cili i lejon nj\u00eb p\u00ebrdoruesi pa privilegje t\u00eb fitoj\u00eb qasje root n\u00eb sistem. Problemi ka marr\u00eb emrin kodor Copy Fail. Nj\u00eb prototip eksploitimi \u00ebsht\u00eb n\u00eb dispozicion. Mund\u00ebsia e shfryt\u00ebzimit t\u00eb vulnerabilitetit \u00ebsht\u00eb demonstruar n\u00eb Ubuntu 24.04 LTS, Amazon Linux 2023, RHEL 10.1 dhe SUSE 16, por v\u00ebrehet se paketat me b\u00ebrtham\u00eb nga distribuime t\u00eb tjera, duke p\u00ebrfshir\u00eb Debian, Arch, Fedora, Rocky dhe Alma, gjithashtu jan\u00eb t\u00eb prekura nga problemi, por ato nuk jan\u00eb testuar ve\u00e7mas.<\/p>\n<p>Vulnerabiliteti shkaktohet nga nj\u00eb gabim logjik n\u00eb API-n\u00eb crypto (AF_ALG) t\u00eb b\u00ebrtham\u00ebs Linux, i b\u00ebr\u00eb gjat\u00eb optimizimit t\u00eb vitit 2017, i cili heq buffering-un e panevojsh\u00ebm p\u00ebrmes kryerjes n\u00eb vend (in-place) t\u00eb operacioneve t\u00eb enkriptimit t\u00eb bllokut AEAD (Enkriptim i Autentifikuar me T\u00eb Dh\u00ebna t\u00eb Lidhura). Problemi ka lindur nga p\u00ebrdorimi i pavend i funksionit splice(), i cili transmeton t\u00eb dh\u00ebna midis deshifrave t\u00eb skedar\u00ebve dhe kanaleve (pipe) pa kopjim, duke kaluar referenca n\u00eb element\u00ebt e caches s\u00eb faqeve. Pas optimizimit, kur nj\u00eb skedar d\u00ebrgohej n\u00eb soketin AF_ALG p\u00ebr dekriptim, n\u00eb struktur\u00ebn scatterlist shkruhej jo nj\u00eb referenc\u00eb n\u00eb nj\u00eb buffer t\u00eb ve\u00e7ant\u00eb, por nj\u00eb referenc\u00eb e drejtp\u00ebrdrejt\u00eb n\u00eb element\u00ebt e caches s\u00eb b\u00ebrtham\u00ebs me t\u00eb dh\u00ebnat e skedarit.<\/p>\n<p>N\u00eb procesin e dekriptimeve n\u00eb t\u00eb ardhmen, t\u00eb dh\u00ebnat e lidhura me tagun e autentifikimit (&#171;authentication tag&#187;) u p\u00ebrziejn\u00eb me t\u00eb dh\u00ebnat e tjera t\u00eb autentikueshme q\u00eb kopjoheshin n\u00eb RX-buffer (AAD, Associated Authenticated Data) dhe me tekstin e koduar, nd\u00ebrsa offseti p\u00ebr operacionin e shkruarjes n\u00eb tagun e autentifikimit u llogarit n\u00eb lidhje me t\u00eb dh\u00ebnat e kopjuara pa kontrollime t\u00eb duhura, duke lejuar k\u00ebshtu ri-shkruan zona t\u00eb rast\u00ebsishme n\u00eb caches e faqes.<\/p>\n<p>Vulnerabiliteti ofron mund\u00ebsin\u00eb p\u00ebr t\u00eb riparuar 4 byte p\u00ebr \u00e7do k\u00ebrkes\u00eb n\u00eb offset-in e zgjedhur, q\u00eb lejon sulmuesin, n\u00ebp\u00ebrmjet d\u00ebrgimit t\u00eb nj\u00eb serie k\u00ebrkesash, t\u00eb ndryshoj\u00eb p\u00ebrmbajtjen e ndonj\u00eb fiche n\u00eb sistemin, e cila \u00ebsht\u00eb e lexueshme dhe q\u00eb \u00ebsht\u00eb vendosur m\u00eb par\u00eb n\u00eb cache. Duke marr\u00eb parasysh se n\u00eb \u00e7do operacion t\u00eb leximit nga skedar\u00ebt p\u00ebrmbajtja kthehet fillimisht nga cache-i i faqes, pas z\u00ebvend\u00ebsimit t\u00eb informacionit n\u00eb cache-in e faqes, b\u00ebrthama ose procesi gjat\u00eb leximit t\u00eb t\u00eb dh\u00ebnave nga skedari do t\u00eb p\u00ebrfitoj\u00eb t\u00eb dh\u00ebna t\u00eb modifikuara n\u00eb vend t\u00eb atyre reale, \u00e7ka mund t\u00eb p\u00ebrdoret p\u00ebr injektimin e kodit n\u00eb skedar\u00ebt ekzekutiv\u00eb q\u00eb ekzekutohen ose n\u00eb bibliotekat e ndara q\u00eb ngarkohen.<\/p>\n<p>P\u00ebr t\u00eb ekzekutuar kodin me privilegje root, mjafton t\u00eb arrihet ndryshimi i caches s\u00eb faqeve p\u00ebr \u00e7do skedar ekzekutiv me flak suid root.<br \/>\nN\u00eb eksploitin e propozuar, kryhet leximi i skedarit ekzekutiv \/usr\/bin\/su dhe modifikimi i p\u00ebrmbajtjes s\u00eb ngarkuar n\u00eb cache-n e faqes p\u00ebr t\u00eb injektuar kodin e tij. N\u00eb lan\u00e7imin e m\u00ebpassh\u00ebm t\u00eb utilitetit &#171;su&#187;, do t\u00eb ngarkohet n\u00eb memorje jo skedari origjinal ekzekutiv nga ruajt\u00ebsi, por nj\u00eb kopje e modifikuar nga cache-i i faqes.<\/p>\n<p>Exploiti \u00ebsht\u00eb universal, nuk k\u00ebrkon adaptim p\u00ebr shp\u00ebrndarje ose versione t\u00eb b\u00ebrtham\u00ebs, dhe mund t\u00eb p\u00ebrdoret me \u00e7do shp\u00ebrndarje. Meqen\u00ebse n\u00eb p\u00ebrdorimin e izolimit t\u00eb kontejner\u00ebve, p\u00ebr t\u00eb gjith\u00eb kontejner\u00ebt p\u00ebrdoret nj\u00eb cache e p\u00ebrbashk\u00ebt e faqeve, vulnerabiliteti mund t\u00eb p\u00ebrdoret p\u00ebr t\u00eb marr\u00eb akses n\u00eb mjedisin host nga kontejneri (m\u00eb von\u00eb premtuan t\u00eb publikojn\u00eb nj\u00eb exploit p\u00ebr t\u00eb anashkaluar izolimin n\u00eb Kubernetes).<\/p>\n<p>Nj\u00eb dob\u00ebsi u zbulua me ndihm\u00ebn e AI pas rreth nj\u00eb ore eksperimentesh me analiz\u00ebn e kodit t\u00eb n\u00ebnshkrimit t\u00eb kriptimit t\u00eb b\u00ebrtham\u00ebs. Problemi shfaqet q\u00eb nga b\u00ebrthama Linux 4.14, e l\u00ebshuar n\u00eb vitin 2017, dhe \u00ebsht\u00eb rregulluar n\u00eb b\u00ebrtham\u00ebn 6.18.22, 6.19.12 dhe 7.0. Statusi i rregullimit t\u00eb dob\u00ebsive n\u00eb shp\u00ebrndarjet mund t\u00eb vler\u00ebsohet n\u00eb k\u00ebto faqe: Debian, Ubuntu, SUSE\/openSUSE, RHEL, Gentoo, Arch,<br \/>\nFedora, ROSA.<\/p>\n<p>Si nj\u00eb m\u00ebnyr\u00eb p\u00ebr t\u00eb anashkaluar mbrojtjen, mund t\u00eb \u00e7aktivizohet moduli i b\u00ebrtham\u00ebs algif_aead, i cili p\u00ebrdoret n\u00eb OpenSSL kur aktivizohet sh\u00ebrbimi afalg dhe n\u00eb aplikacione t\u00eb ve\u00e7anta (mund t\u00eb kontrollohet prania e aplikacioneve t\u00eb ngjashme me komand\u00ebn &#171;lsof | grep AF_ALG&#187;):<\/p>\n<ul>\n<p>   echo &#171;install algif_aead \/bin\/false&#187; &gt; \/etc\/modprobe.d\/disable-algif.conf<br \/>\n   rmmod algif_aead<br \/>\n<br \/>Burimi: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=65325\">opennet.ru<\/a> <\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Xint \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u0432 \u044f\u0434\u0440\u0435 Linux \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2026-31431), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0443\u044e \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f \u043a \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d\u043e \u043a\u043e\u0434\u043e\u0432\u043e\u0435 \u0438\u043c\u044f Copy Fail. \u0414\u043e\u0441\u0442\u0443\u043f\u0435\u043d \u043f\u0440\u043e\u0442\u043e\u0442\u0438\u043f \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442\u0430. \u0412\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u043f\u0440\u043e\u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u043e\u0432\u0430\u043d\u0430 \u0432 Ubuntu 24.04 LTS, Amazon Linux 2023, RHEL 10.1 \u0438 SUSE 16, \u043d\u043e \u043e\u0442\u043c\u0435\u0447\u0430\u0435\u0442\u0441\u044f, \u0447\u0442\u043e \u043f\u0430\u043a\u0435\u0442\u044b \u0441 \u044f\u0434\u0440\u043e\u043c \u0438\u0437 \u0434\u0440\u0443\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432, \u0432\u043a\u043b\u044e\u0447\u0430\u044f Debian, Arch, Fedora, [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":8,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-170106","post","type-post","status-publish","format-standard","hentry","category-novosti-interneta"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 4.9.10 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Xint \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u0432 \u044f\u0434\u0440\u0435 Linux \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2026-31431), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0443\u044e \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f \u043a \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d\u043e \u043a\u043e\u0434\u043e\u0432\u043e\u0435 \u0438\u043c\u044f Copy Fail. \u0414\u043e\u0441\u0442\u0443\u043f\u0435\u043d \u043f\u0440\u043e\u0442\u043e\u0442\u0438\u043f \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442\u0430. \u0412\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u043f\u0440\u043e\u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u043e\u0432\u0430\u043d\u0430 \u0432 Ubuntu 24.04 LTS, Amazon Linux 2023, RHEL 10.1 \u0438 SUSE 16, \u043d\u043e \u043e\u0442\u043c\u0435\u0447\u0430\u0435\u0442\u0441\u044f, \u0447\u0442\u043e \u043f\u0430\u043a\u0435\u0442\u044b \u0441 \u044f\u0434\u0440\u043e\u043c \u0438\u0437 \u0434\u0440\u0443\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432, \u0432\u043a\u043b\u044e\u0447\u0430\u044f Debian, Arch, Fedora,\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Erik Peterson\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 4.9.10\" \/>\n\t\t<meta property=\"og:locale\" content=\"sq_AL\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47Copy Fail \u2014 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u044f\u0434\u0440\u0435 Linux, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root \u0432 \u0431\u043e\u043b\u044c\u0448\u0438\u043d\u0441\u0442\u0432\u0435 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Xint \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u0432 \u044f\u0434\u0440\u0435 Linux \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2026-31431), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0443\u044e \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f \u043a \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d\u043e \u043a\u043e\u0434\u043e\u0432\u043e\u0435 \u0438\u043c\u044f Copy Fail. \u0414\u043e\u0441\u0442\u0443\u043f\u0435\u043d \u043f\u0440\u043e\u0442\u043e\u0442\u0438\u043f \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442\u0430. \u0412\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u043f\u0440\u043e\u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u043e\u0432\u0430\u043d\u0430 \u0432 Ubuntu 24.04 LTS, Amazon Linux 2023, RHEL 10.1 \u0438 SUSE 16, \u043d\u043e \u043e\u0442\u043c\u0435\u0447\u0430\u0435\u0442\u0441\u044f, \u0447\u0442\u043e \u043f\u0430\u043a\u0435\u0442\u044b \u0441 \u044f\u0434\u0440\u043e\u043c \u0438\u0437 \u0434\u0440\u0443\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432, \u0432\u043a\u043b\u044e\u0447\u0430\u044f Debian, Arch, Fedora,\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-04-30T16:24:29+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-04-30T16:24:29+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Copy Fail \u2014 nj\u00eb dob\u00ebsi n\u00eb b\u00ebrtham\u00ebn Linux q\u00eb lejon marrjen e root n\u00eb shumic\u00ebn e shp\u00ebrndarjeve | ProHoster","description":"Shkenc\u00ebtar\u00ebt nga kompanin\u00eb Xint zbuluan nj\u00eb dob\u00ebsi n\u00eb b\u00ebrthamat Linux (CVE-2026-31431), e cila lejon nj\u00eb p\u00ebrdorues pa privilegje t\u00eb fitoj\u00eb akses root n\u00eb sistem. Problemit i \u00ebsht\u00eb caktuar emri kodik Copy Fail. Nj\u00eb prototip eksploiti \u00ebsht\u00eb i disponuesh\u00ebm. Mund\u00ebsia e shfryt\u00ebzimit t\u00eb dob\u00ebsis\u00eb \u00ebsht\u00eb demonstruar n\u00eb Ubuntu 24.04 LTS, Amazon Linux 2023, RHEL 10.1 dhe SUSE 16, por vihet re se paketat me b\u00ebrtham\u00eb nga shp\u00ebrndarje t\u00eb tjera, p\u00ebrfshir\u00eb Debian, Arch, Fedora,","canonical_url":"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"sq_AL","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47Copy Fail \u2014 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u044f\u0434\u0440\u0435 Linux, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root \u0432 \u0431\u043e\u043b\u044c\u0448\u0438\u043d\u0441\u0442\u0432\u0435 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432 | ProHoster","og:description":"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Xint \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u0432 \u044f\u0434\u0440\u0435 Linux \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2026-31431), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0443\u044e \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f \u043a \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d\u043e \u043a\u043e\u0434\u043e\u0432\u043e\u0435 \u0438\u043c\u044f Copy Fail. \u0414\u043e\u0441\u0442\u0443\u043f\u0435\u043d \u043f\u0440\u043e\u0442\u043e\u0442\u0438\u043f \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442\u0430. \u0412\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u043f\u0440\u043e\u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u043e\u0432\u0430\u043d\u0430 \u0432 Ubuntu 24.04 LTS, Amazon Linux 2023, RHEL 10.1 \u0438 SUSE 16, \u043d\u043e \u043e\u0442\u043c\u0435\u0447\u0430\u0435\u0442\u0441\u044f, \u0447\u0442\u043e \u043f\u0430\u043a\u0435\u0442\u044b \u0441 \u044f\u0434\u0440\u043e\u043c \u0438\u0437 \u0434\u0440\u0443\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432, \u0432\u043a\u043b\u044e\u0447\u0430\u044f Debian, Arch, Fedora,","og:url":"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2026-04-30T16:24:29+00:00","article:modified_time":"2026-04-30T16:24:29+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":[],"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/170106","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/comments?post=170106"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/170106\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media?parent=170106"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/categories?post=170106"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/tags?post=170106"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}