{"id":57237,"date":"2024-09-27T13:47:23","date_gmt":"2024-09-27T13:47:23","guid":{"rendered":"http:\/\/d64a19f9-9da3-401a-a8a6-aa00958b8760"},"modified":"2024-09-27T13:47:23","modified_gmt":"2024-09-27T13:47:23","slug":"worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/","title":{"rendered":"Worried about that critical RCE Linux bug? Here&#8217;s why you can relax"},"content":{"rendered":"<figure class=\"c-shortcodeImage u-clearfix c-shortcodeImage-large\">\n<div class=\"c-shortcodeImage_imageContainer\">\n<div class=\"c-shortcodeImage_image\"><picture class=\"c-cmsImage c-cmsImage_loaded\"><source media=\"(max-width: 767px)\" srcset=\"https:\/\/www.zdnet.com\/a\/img\/resize\/36e5561a570ae9c24707156123489ae899793459\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=768\" alt=\"gettyimages-1058280382\"><source media=\"(max-width: 1023px)\" srcset=\"https:\/\/www.zdnet.com\/a\/img\/resize\/1b6e6f49e1e61bfe87f0a56814eb069447ce6c21\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=1024\" alt=\"gettyimages-1058280382\"><source media=\"(max-width: 1440px)\" srcset=\"https:\/\/www.zdnet.com\/a\/img\/resize\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280\" alt=\"gettyimages-1058280382\"><img decoding=\"async\" src=\"https:\/\/www.zdnet.com\/a\/img\/resize\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280\" alt=\"gettyimages-1058280382\" width=\"1280\" height=\"720.0914285714287\" fetchpriority=\"low\"><\/picture><\/div>\n<p> <!----><\/div><figcaption> <span class=\"c-shortcodeImage_credit g-outer-spacing-top-xsmall u-block\">simonkr\/Getty Images<\/span><\/figcaption><\/figure>\n<p>People in Linux circles <a href=\"https:\/\/threadreaderapp.com\/thread\/1838169889330135132.html\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">were getting worried<\/a> this week.&nbsp;<\/p>\n<p>On Monday, Italian programmer Simone Margaritelli, who goes by the handle @evilsocket, claimed that there was an <a href=\"https:\/\/threadreaderapp.com\/thread\/1838169889330135132.html\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">unauthenticated Remote Code Execution (RCE)<\/a>&nbsp;with a Common Vulnerability Scoring System (CVSS) score of 9.9 that could be used against all Linux systems.&nbsp;<\/p>\n<p><strong>Also:&nbsp;<a href=\"https:\/\/www.zdnet.com\/article\/5-linux-terminal-apps-that-are-better-than-your-default-and-free-to-install\/\" rel=\"follow\">5 Linux terminal apps that are better than your default &#8211; and free to install<\/a><\/strong><\/p>\n<p>For those who aren&#8217;t security experts, a score of 9.9 is as bad as it gets. But what Margaritelli didn&#8217;t mention is that, by default, almost no properly secured system could actually be attacked via the vulnerabilities.&nbsp;<\/p>\n<p>Mind you, I did say &#8220;properly secured.&#8221; It appears many &#8212; hundreds of thousands, in fact &#8212; aren&#8217;t correctly locked down. As Margaritelli <a href=\"https:\/\/www.evilsocket.net\/2024\/09\/26\/Attacking-UNIX-systems-via-CUPS-Part-I\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">wrote in a blog post<\/a>, &#8220;I&#8217;ve been scanning the entire public internet IPv4 ranges several times a day for weeks, sending the UDP packet and logging whatever connected back. And I&#8217;ve got back connections from hundreds of thousands of devices.&#8221;<\/p>\n<p><strong>Also: <a href=\"https:\/\/www.zdnet.com\/article\/rust-in-linux-now-progress-pitfalls-and-why-devs-and-maintainers-need-each-other\/\" rel=\"follow\">Rust in Linux now: Progress, pitfalls, and why devs and maintainers need each other<\/a><\/strong><\/p>\n<p>Let me start by explaining that the problem is not with Linux per se. It&#8217;s with the <a href=\"https:\/\/openprinting.github.io\/cups\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">OpenPrinting CUPS<\/a> print program. CUPS is an open-source system that uses the <a href=\"https:\/\/pwg.org\/ipp\/ippguide.html\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">Internet Printing Protocol (IPP)<\/a> to manage printers, print requests, and print queues. When it is installed and running, it enables computers to act as print servers.&nbsp;<\/p>\n<p><!----><\/p>\n<p>As Margaritelli explained, the problem is that, if properly exploited, &#8220;A remote unauthenticated attacker can silently replace existing printers&#8217; (or install new ones) IPP urls with a malicious one, resulting in arbitrary command execution (on the computer) when a print job is started (from that computer).&#8221;<\/p>\n<p><strong>Also: <a href=\"https:\/\/www.zdnet.com\/article\/linux-and-open-source-documentation-is-a-mess\/\" rel=\"follow\">Linux and open-source documentation is a mess: Here&#8217;s the solution<\/a><\/strong><\/p>\n<p>In its <a href=\"https:\/\/www.redhat.com\/en\/blog\/red-hat-response-openprinting-cups-vulnerabilities\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">CUPS security bulletin<\/a>, <a href=\"https:\/\/www.redhat.com\/en\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">Red Hat<\/a> explained that to exploit it, the following conditions must be met:<\/p>\n<ol readability=\"3\">\n<li readability=\"-1\">\n<p>The cups-browsed service has manually been enabled or started.<\/p>\n<\/li>\n<li readability=\"0\">\n<p>An attacker has access to a vulnerable server, which:<\/p>\n<\/li>\n<ol readability=\"-0.5\">\n<li readability=\"0\">\n<p>Allows unrestricted access, such as the public Internet or<\/p>\n<\/li>\n<li readability=\"-1\">\n<p>Gains access to an internal network where local connections are trusted<\/p>\n<\/li>\n<\/ol>\n<li readability=\"0\">\n<p>The attacker advertises a malicious IPP server, thereby provisioning a malicious printer<\/p>\n<\/li>\n<li readability=\"-1\">\n<p>A potential victim attempts to print from the malicious device<\/p>\n<\/li>\n<li readability=\"-1\">\n<p>The attacker executes arbitrary code on the victim&#8217;s machine<\/p>\n<\/li>\n<\/ol>\n<p>Where to begin? First, who in their right mind puts any computer on the onternet with unrestricted access?&nbsp;<\/p>\n<p>I&#8217;m also curious why such a computer would have trusted local connections. Forget about CUPS; this is just asking for your server and everything on your network to be hacked.&nbsp;<\/p>\n<p><strong>Also: <a href=\"https:\/\/www.zdnet.com\/article\/how-to-run-a-windows-app-on-linux-with-wine\/\" rel=\"follow\">How to run a Windows app on Linux with Wine<\/a><\/strong><\/p>\n<p>This is no 9.9 problem. Red Hat and all the other Linux distros addressing this linked set of security holes rank it as important. The individual CVE CVSS scores of the four bugs range from 6.1 to 8.2.&nbsp;<\/p>\n<p>As Ilkka Turunen, the open-source supply chain company <a href=\"https:\/\/www.sonatype.com\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">Sonatype<\/a>&#8216;s Field CTO, wrote on LinkedIn, &#8220;<a href=\"https:\/\/www.linkedin.com\/posts\/activity-7245162309587738624-fL5O\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">Good news then &#8212; it&#8217;s an RCE but with several mitigations<\/a>, including the fact the attacker needs to be able to connect to a computer via UDP, which is widely disabled on network ingress, and the service is usually not on by default. It seems like the real-world impact is low.&#8221;<\/p>\n<p>That sounds fair to me.&nbsp;<\/p>\n<p>This is a classic example of a service that doesn&#8217;t validate or sanitize its inputs. The classic cartoon example of this kind of exploit is <a href=\"https:\/\/xkcd.com\/327\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"c-regularLink\">Little Bobby Tables<\/a>. Efforts are afoot to stop this kind of exploit in CUPS, but the final patches haven&#8217;t been written yet.<\/p>\n<figure class=\"c-shortcodeImage u-clearfix c-shortcodeImage-large c-shortcodeImage-hasCaption\">\n<div class=\"c-shortcodeImage_imageContainer\">\n<div class=\"c-shortcodeImage_image\"><picture class=\"c-cmsImage\"><!----> <img decoding=\"async\" src=\"https:\/\/www.zdnet.com\/article\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/\" alt=\"Little Bobby Tables\" width=\"1280\" height=\"393.99399399399397\" fetchpriority=\"low\"><\/picture><\/div>\n<p> <!----><\/div><figcaption>\n<div class=\"c-shortcodeImage_caption g-inner-spacing-right-small g-color-black\">\n<div class=\"c-ShortcodeContent\">\n<p>https:\/\/xkcd.com\/327\/<\/p>\n<\/div>\n<\/div>\n<p> <span class=\"c-shortcodeImage_credit g-outer-spacing-top-xsmall u-block\">xkcd.com.<\/span><\/figcaption><\/figure>\n<p>As Margaritelli rightfully pointed out, the CUPS code itself is a mess. It really needs to be cleaned up and fixed. Margaritelli reported that many of the programmers involved with CUPS resisted efforts to point out the bugs (never mind fixing them).&nbsp;<\/p>\n<p>That&#8217;s not cool, guys. Not cool at all.&nbsp;<\/p>\n<h2>How to see if you&#8217;re running CUPS<\/h2>\n<p>For the moment, the fix is to see if you&#8217;re running CUPS with such a command as:<\/p>\n<p><em>$ sudo systemctl status cups-browsed<\/em><\/p>\n<p>If it&#8217;s not running, you&#8217;re done. No problem.&nbsp;<\/p>\n<p>If you are, and you don&#8217;t need your machine to be a print server, run:<\/p>\n<p><em>$ sudo&nbsp; systemctl stop cups-browsed<\/em><\/p>\n<p>Which will stop the problem in its tracks. To stop it from starting again, run:<\/p>\n<p><em>$ sudo systemctl disable cups-browsed<\/em><\/p>\n<p>While you&#8217;re at it, for pity&#8217;s sake, if you have a server running naked on the Internet, stop it! Put a firewall on that thing and, in particular, block any outside traffic to port 631, the default IPP port.&nbsp;<\/p>\n<p>Let&#8217;s say you have a busy print server behind a firewall. Are you out of the woods? No, you&#8217;re not. Someone on your local network who needs to access port 631 to print documents could attack the server.<\/p>\n<p><strong>Also:&nbsp;<a href=\"https:\/\/www.zdnet.com\/article\/googles-hidden-ai-tool-turns-your-text-into-stunningly-lifelike-podcasts-for-free-listen-for-yourself\/\" rel=\"follow\">Google&#8217;s hidden AI tool turns your text into stunningly lifelike podcasts &#8211; for free<\/a><\/strong><\/p>\n<p>In that case, you must edit the \/etc\/cups\/cups-browsed.conf file. Specifically, you must set the BrowseRemoteProtocols directive values from the default &#8220;dnssd cups&#8221; to &#8220;none&#8221;. Then restart the cups-browsed service with the command:&nbsp;<\/p>\n<p><em>$ sudo systemctl restart cups-browsed<\/em><\/p>\n<p>Make no mistake about it, though once the patches are available, you&#8217;ll still need to patch as soon as possible. But, really, so long as you didn&#8217;t pull the boneheaded stunt of putting your Linux computers on the internet without a firewall, you should be fine.&nbsp;<\/p>\n<p>READ MORE <a href=\"https:\/\/www.zdnet.com\/article\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/#ftag=RSSbaffb68\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Yes, there are security holes in OpenPrinting CUPS, which Linux, Chrome OS, MacOS, and some Unix systems use for printing, but it&#8217;s not that bad. Here&#8217;s how to check if you&#8217;re at risk.<br \/>\nREAD MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[62],"tags":[],"class_list":["post-57237","post","type-post","status-publish","format-standard","hentry","category-zdnet-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Worried about that critical RCE Linux bug? Here&#039;s why you can relax 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Worried about that critical RCE Linux bug? Here&#039;s why you can relax 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2024-09-27T13:47:23+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.zdnet.com\/a\/img\/resize\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Worried about that critical RCE Linux bug? Here&#8217;s why you can relax\",\"datePublished\":\"2024-09-27T13:47:23+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/\"},\"wordCount\":954,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\\\/2024\\\/09\\\/27\\\/2454ffce-6529-4d38-aed9-2bc052ec81c8\\\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280\",\"articleSection\":[\"ZDNet | Security\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/\",\"name\":\"Worried about that critical RCE Linux bug? Here's why you can relax 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\\\/2024\\\/09\\\/27\\\/2454ffce-6529-4d38-aed9-2bc052ec81c8\\\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280\",\"datePublished\":\"2024-09-27T13:47:23+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\\\/2024\\\/09\\\/27\\\/2454ffce-6529-4d38-aed9-2bc052ec81c8\\\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280\",\"contentUrl\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\\\/2024\\\/09\\\/27\\\/2454ffce-6529-4d38-aed9-2bc052ec81c8\\\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Worried about that critical RCE Linux bug? Here&#8217;s why you can relax\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Worried about that critical RCE Linux bug? Here's why you can relax 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/","og_locale":"en_US","og_type":"article","og_title":"Worried about that critical RCE Linux bug? Here's why you can relax 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2024-09-27T13:47:23+00:00","og_image":[{"url":"https:\/\/www.zdnet.com\/a\/img\/resize\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Worried about that critical RCE Linux bug? Here&#8217;s why you can relax","datePublished":"2024-09-27T13:47:23+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/"},"wordCount":954,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/#primaryimage"},"thumbnailUrl":"https:\/\/www.zdnet.com\/a\/img\/resize\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280","articleSection":["ZDNet | Security"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/","url":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/","name":"Worried about that critical RCE Linux bug? Here's why you can relax 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/#primaryimage"},"thumbnailUrl":"https:\/\/www.zdnet.com\/a\/img\/resize\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280","datePublished":"2024-09-27T13:47:23+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/#primaryimage","url":"https:\/\/www.zdnet.com\/a\/img\/resize\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280","contentUrl":"https:\/\/www.zdnet.com\/a\/img\/resize\/aeb2a3b6e1a5b06cb360deb186cd8df5676295ae\/2024\/09\/27\/2454ffce-6529-4d38-aed9-2bc052ec81c8\/gettyimages-1058280382.jpg?auto=webp&amp;width=1280"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/worried-about-that-critical-rce-linux-bug-heres-why-you-can-relax\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Worried about that critical RCE Linux bug? Here&#8217;s why you can relax"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/57237","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=57237"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/57237\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=57237"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=57237"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=57237"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}