{"id":170106,"date":"2026-04-30T18:24:29","date_gmt":"2026-04-30T16:24:29","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov"},"modified":"2026-04-30T18:24:29","modified_gmt":"2026-04-30T16:24:29","slug":"copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov","status":"publish","type":"post","link":"https:\/\/prohoster.info\/sq\/blog\/news\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov","title":{"rendered":"Copy Fail \u2014 nj\u00eb dob\u00ebsi n\u00eb b\u00ebrtham\u00ebn Linux, e cila lejon marrjen e privilegjeve root n\u00eb shumic\u00ebn e shp\u00ebrndarjeve.","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Hulumtaret nga kompania Xint zbuluan nj\u00eb vulnerabilitet n\u00eb b\u00ebrtham\u00ebn Linux (CVE-2026-31431), i cili lejon nj\u00eb p\u00ebrdorues t\u00eb paprivilegjuar t\u00eb fitoj\u00eb qasje root n\u00eb sistem. Problemi i \u00ebsht\u00eb atribuara emri i koduar Copy Fail. Nj\u00eb prototip i eksploitit \u00ebsht\u00eb n\u00eb dispozicion. Mund\u00ebsia e shfryt\u00ebzimit t\u00eb vulnerabilitetit \u00ebsht\u00eb demonstruar n\u00eb Ubuntu 24.04 LTS, Amazon Linux 2023, RHEL 10.1 dhe SUSE 16, por v\u00ebren se paketat me b\u00ebrthama nga shp\u00ebrndarje t\u00eb tjera, duke p\u00ebrfshir\u00eb Debian, Arch, Fedora, Rocky dhe Alma, gjithashtu jan\u00eb t\u00eb ndjeshme ndaj problemit, megjithat\u00eb ato nuk jan\u00eb testuar ve\u00e7mas.<\/p>\n<p>Vulnerabiliteti \u00ebsht\u00eb shkaktuar nga nj\u00eb gabim logjik n\u00eb API-n\u00eb crypto (AF_ALG) t\u00eb b\u00ebrtham\u00ebs Linux, i b\u00ebr\u00eb gjat\u00eb optimizimit n\u00eb vitin 2017, q\u00eb heq mbushjen e tep\u00ebrt p\u00ebrmes kryerjes n\u00eb vend (in-place) t\u00eb operacioneve t\u00eb enkriptimit me bllok AEAD (Enkriptimi i Autorizuar me T\u00eb Dh\u00ebna t\u00eb Shkurtuara). Problemi ka lindur nga p\u00ebrdorimi i pakujdessh\u00ebm i funksionit splice(), q\u00eb transferon t\u00eb dh\u00ebna midis descriptor\u00ebve t\u00eb skedar\u00ebve dhe kanaleve (pipe) pa kopjim, duke kaluar referenca n\u00eb element\u00ebt n\u00eb p\u00ebrplasjen e faqeve. Pas optimizimit, gjat\u00eb transferimit t\u00eb skedarit n\u00eb soketin AF_ALG p\u00ebr dekodim, n\u00eb struktur\u00ebn scatterlist u shkruante jo nj\u00eb referenc\u00eb n\u00eb nj\u00eb buffer t\u00eb ve\u00e7ant\u00eb, por nj\u00eb referenc\u00eb direkte n\u00eb element\u00ebt e p\u00ebrplasjes s\u00eb faqeve t\u00eb b\u00ebrtham\u00ebs me t\u00eb dh\u00ebnat e skedarit.<\/p>\n<p>N\u00eb procesin e dekodimit, t\u00eb dh\u00ebnat e lidhura me tagun e autentikimit (\"authentication tag\") u p\u00ebrzien me t\u00eb dh\u00ebnat e tjera t\u00eb autentifikueshme (AAD, Data e Asociuar e Autentifikimit) dhe tekstin e koduar, nd\u00ebrsa offseti p\u00ebr operacionin e shkruar n\u00eb tagun e autentikimit u llogarit n\u00eb lidhje me t\u00eb dh\u00ebnat e kopjuara pa kontrollime t\u00eb duhura, duke lejuar k\u00ebshtu q\u00eb t\u00eb shkruhen b\u00f6lg t\u00eb rast\u00ebsishme n\u00eb cache-in e faqeve.<\/p>\n<p>Vulnerabiliteti lejon q\u00eb n\u00eb \u00e7do k\u00ebrkes\u00eb t\u00eb rishkruhen 4 byte n\u00eb nj\u00eb pozicion t\u00eb zgjedhur, q\u00eb i jep mund\u00ebsi sulmuesit t\u00eb ndryshoj\u00eb p\u00ebrmbajtjen e \u00e7do skedari n\u00eb sistem, q\u00eb \u00ebsht\u00eb e lexueshme, p\u00ebrmes d\u00ebrgimit t\u00eb nj\u00eb s\u00ebr\u00eb k\u00ebrkesash p\u00ebr ta vendosur k\u00ebt\u00eb p\u00ebrmbajtje n\u00eb p\u00ebrplasje. Duke pasur parasysh se n\u00eb \u00e7do operacion leximi nga skedar\u00ebt, p\u00ebrmbajtja merret fillimisht nga p\u00ebrplasja e faqeve, pas nd\u00ebrrimit t\u00eb informacionit n\u00eb p\u00ebrplasjen e faqeve, b\u00ebrthama ose procesi, gjat\u00eb leximit t\u00eb t\u00eb dh\u00ebnave nga skedari, do t\u00eb marr\u00eb t\u00eb dh\u00ebna t\u00eb ndryshuara, jo reale, gj\u00eb q\u00eb mund t\u00eb p\u00ebrdoret p\u00ebr vendosjen e kodit n\u00eb skedar\u00ebt ekzekutiv\u00eb ose bibliotekat e p\u00ebrbashk\u00ebta t\u00eb ngarkuar.<\/p>\n<p>P\u00ebr t\u00eb ekzekutuar kodin me t\u00eb drejtat root, mjafton t\u00eb arrihet ndryshimi i caches s\u00eb faqes p\u00ebr \u00e7do skedari ekzekutiv me flamur suid root.<br \/>\nN\u00eb eksploitin e propozuar, b\u00ebhet leximi i skedarit ekzekutues \/usr\/bin\/su dhe modifikimi i p\u00ebrmbajtjes s\u00eb k\u00ebtij skedari t\u00eb ngarkuar n\u00eb cache-in e faqeve p\u00ebr t\u00eb vendosur kodin e tij. Kur mjeti \"su\" t\u00eb niset m\u00eb pas, n\u00eb memorje do t\u00eb ngarkohet jo skedari origjinal ekzekutues nga ruajt\u00ebsi, por nj\u00eb kopje e modifikuar nga cache-i i faqeve.<\/p>\n<p>Eksploiti \u00ebsht\u00eb universal, nuk k\u00ebrkon adaptim p\u00ebr distribucione ose versione t\u00eb b\u00ebrthamor\u00ebve dhe mund t\u00eb p\u00ebrdoret me \u00e7do distribution. Duke qen\u00eb se izolimi i konteiner\u00ebve p\u00ebrdor nj\u00eb cache t\u00eb p\u00ebrbashk\u00ebt p\u00ebr t\u00eb gjitha konteiner\u00ebt, vulnerabiliteti mund t\u00eb p\u00ebrdoret p\u00ebr t\u00eb fituar akses n\u00eb ambientin host nga kontenieri (m\u00eb von\u00eb do t\u00eb publikojn\u00eb nj\u00eb exploit p\u00ebr t\u00eb anashkaluar izolimin n\u00eb Kubernetes).<\/p>\n<p>Vulnerabiliteti u identifikua me ndihm\u00ebn e AI pas rreth nj\u00eb ore eksperimentimesh me analiz\u00ebn e kodit t\u00eb n\u00ebn-sistemit kriptografik t\u00eb b\u00ebrthamor\u00ebve. Problemi shfaqet q\u00eb nga b\u00ebrthama Linux 4.14, e l\u00ebshuar n\u00eb 2017, dhe \u00ebsht\u00eb eliminuar n\u00eb b\u00ebrtham\u00ebn 6.18.22, 6.19.12 dhe 7.0. Statusi i eliminimit t\u00eb vulnerabiliteteve n\u00eb distribucione mund t\u00eb vler\u00ebsohet n\u00eb k\u00ebto faqe: Debian, Ubuntu, SUSE\/openSUSE, RHEL, Gentoo, Arch,<br \/>\nFedora, ROSA.<\/p>\n<p>Si nj\u00eb zgjidhje alternative p\u00ebr mbrojtjen, mund t\u00eb \u00e7aktivizoni modulitin e kernelit algif_aead, i cili p\u00ebrdoret n\u00eb OpenSSL kur aktivizohet qart\u00eb motori afalg dhe n\u00eb aplikacione t\u00eb ve\u00e7anta (mund t\u00eb kontrolloni p\u00ebr pranin\u00eb e aplikacioneve t\u00eb tilla t\u00eb nisura me komand\u00ebn \"lsof | grep AF_ALG\"):<\/p>\n<ul>\n<p>   echo \"install algif_aead \/bin\/false\" &gt; \/etc\/modprobe.d\/disable-algif.conf<br \/>\n   rmmod algif_aead<br \/>\n<br \/>Burimi: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=65325\">opennet.ru<\/a> <\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Xint \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u0432 \u044f\u0434\u0440\u0435 Linux \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2026-31431), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0443\u044e \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f \u043a \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0435 \u043f\u0440\u0438\u0441\u0432\u043e\u0435\u043d\u043e \u043a\u043e\u0434\u043e\u0432\u043e\u0435 \u0438\u043c\u044f Copy Fail. \u0414\u043e\u0441\u0442\u0443\u043f\u0435\u043d \u043f\u0440\u043e\u0442\u043e\u0442\u0438\u043f \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442\u0430. \u0412\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u043f\u0440\u043e\u0434\u0435\u043c\u043e\u043d\u0441\u0442\u0440\u0438\u0440\u043e\u0432\u0430\u043d\u0430 \u0432 Ubuntu 24.04 LTS, Amazon Linux 2023, RHEL 10.1 \u0438 SUSE 16, \u043d\u043e \u043e\u0442\u043c\u0435\u0447\u0430\u0435\u0442\u0441\u044f, \u0447\u0442\u043e \u043f\u0430\u043a\u0435\u0442\u044b \u0441 \u044f\u0434\u0440\u043e\u043c \u0438\u0437 \u0434\u0440\u0443\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432, \u0432\u043a\u043b\u044e\u0447\u0430\u044f Debian, Arch, Fedora, [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":8,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-170106","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Xint \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u0432 \u044f\u0434\u0440\u0435 Linux \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2026-31431), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0443\u044e \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f \u043a \u0441\u0438\u0441\u0442\u0435\u043c\u0435.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Erik Peterson\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/sq\/blog\/news\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2\" \/>\n\t\t<meta property=\"og:locale\" content=\"sq_AL\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47Copy Fail \u2014 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u044f\u0434\u0440\u0435 Linux, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root \u0432 \u0431\u043e\u043b\u044c\u0448\u0438\u043d\u0441\u0442\u0432\u0435 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Xint \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u0432 \u044f\u0434\u0440\u0435 Linux \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2026-31431), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0443\u044e \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f \u043a \u0441\u0438\u0441\u0442\u0435\u043c\u0435.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/sq\/blog\/news\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-04-30T16:24:29+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-04-30T16:24:29+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Copy Fail \u2014 vulnerabilitet n\u00eb b\u00ebrtham\u00ebn Linux, q\u00eb lejon marrjen e root n\u00eb shumic\u00ebn e distribucioneve | ProHoster","description":"K\u00ebrkuesit nga kompania Xint kan\u00eb zbuluar nj\u00eb vulnerabilitet n\u00eb b\u00ebrtham\u00ebn Linux (CVE-2026-31431), i cili lejon nj\u00eb p\u00ebrdorues pa privilegje t\u00eb fitoj\u00eb akses root n\u00eb sistem.","canonical_url":"https:\/\/prohoster.info\/sq\/blog\/news\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"sq_AL","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47Copy Fail \u2014 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u044f\u0434\u0440\u0435 Linux, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root \u0432 \u0431\u043e\u043b\u044c\u0448\u0438\u043d\u0441\u0442\u0432\u0435 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432 | ProHoster","og:description":"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u0438 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Xint \u0432\u044b\u044f\u0432\u0438\u043b\u0438 \u0432 \u044f\u0434\u0440\u0435 Linux \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2026-31431), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0443\u044e \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f \u043a \u0441\u0438\u0441\u0442\u0435\u043c\u0435.","og:url":"https:\/\/prohoster.info\/sq\/blog\/news\/copy-fail-uyazvimost-v-yadre-linux-pozvolyayushhaya-poluchit-root-v-bolshinstve-distributivov","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2026-04-30T16:24:29+00:00","article:modified_time":"2026-04-30T16:24:29+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":[],"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/170106","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/comments?post=170106"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/170106\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media?parent=170106"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/categories?post=170106"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/tags?post=170106"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}