
image credit: unsplash
The vulnerabilities, collectively known as Nimbuspwn, provide a roadmap for attackers to elevate privileges to root on many Linux desktop endpoints, Redmond said in a public advisory.
Microsoft said its researchers created an experimental exploit capable of delivering a root backdoor with permanent root access.
“The vulnerabilities can be chained together to gain root privileges on Linux systems, allowing attackers to deploy payloads, like a root backdoor, and perform other malicious actions via arbitrary root code execution,” said Jonathan Bar Or, a member of the Microsoft 365 Defender Research Team.