The D in SystemD stands for Danger, Will Robinson! Defanged exploit code for security holes now out in the wild

Found on The Register on Thursday, 31 January 2019
Browse Software

Those who haven't already patched a trio of recent vulnerabilities in the Linux world's SystemD have an added incentive to do so: security biz Capsule8 has published exploit code for the holes.

Exploitation of these code flaws allows an attacker to alter system memory in order to commandeer systemd-journal, which permits privilege escalation to the root account of the system running the software.

Let's stuff everything into an init-system, they said. There's nothing wrong with that, they said.