Post #1888671
2026-04-30 07:54 UTC
bringing this toot back to say that if you have `RestrictAddressFamilies=AF_UNIX AF_INET AF_INET6` in your systemd service (as distros have already been rolling out in services they ship), you're safe from someone chaining an RCE in one of your network services through to today's kernel LPE vuln
https://hails.org/@hailey/115772373049372624
Replies (1)
-
@XerShadowTail@chitter.xyz 2026-04-30 13:51
@hailey systemd with cgroups is so damn good.