Vue normale

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.
Aujourd’hui — 4 août 2026IT

Gufw : gérer le pare-feu UFW sous Linux avec une interface graphique

4 août 2026 à 06:00

Découvrez Gufw, l'interface graphique UFW sous Linux : installation, création des règles de pare-feu et bonnes pratiques, sans passer par la ligne de commande.

Le post Gufw : gérer le pare-feu UFW sous Linux avec une interface graphique a été publié sur IT-Connect.

Ubuntu 26.04 will silently move hwctl from Deb to Snap

Par : IT News
4 août 2026 à 11:14
Canonical is replacing Ubuntu’s traditional `hwctl` Deb package with a confined Snap, beginning with an automatic migration planned for Ubuntu 26.04 LTS. The change is tied to future GNOME hardware-management integration, but administrators should also account for Snap’s security maintenance requirements.

Source

Hier — 3 août 2026IT

Linux 7.2-rc6 is unusually huge, but the release remains on schedule

Par : IT News
3 août 2026 à 15:57
Linux 7.2-rc6 is unusually huge, but the release remains on schedule
Linux 7.2-rc6 is the largest sixth release candidate in years by commit count, yet Linus Torvalds does not see a technical reason to delay Linux 7.2. The unusually busy kernel update is dominated by driver and networking fixes, with the stable release still expected in roughly two weeks.

Source

À partir d’avant-hierIT

Arch Linux freezes AUR package adoptions after malware wave

Par : IT News
1 août 2026 à 12:57
Arch Linux freezes AUR package adoptions after malware wave
Arch Linux has temporarily frozen package adoptions in the Arch User Repository (AUR) after attackers used maintainer takeovers and orphaned packages to push malicious updates. The campaign reportedly affects dozens of packages and delivers a Linux infostealer with remote access and SSH-worm capabilities.

Source

Azure makes CIS auditing native for Linux VMs

Par : IT News
31 juillet 2026 à 17:41
Azure makes CIS auditing native for Linux VMs
Microsoft has made native CIS Benchmark auditing generally available for Linux virtual machines, eliminating the need for separate compliance tools. Azure Machine Configuration now continuously checks Azure and Azure Arc-enabled Linux systems against CIS-certified benchmarks and surfaces the results through Azure management services.

Source

GPT-5.6 Sol blocked a Linux bug hunt, while open models found the trail

Par : IT News
30 juillet 2026 à 11:36
GPT-5.6 Sol blocked a Linux bug hunt, while open models found the trail
OpenAI’s GPT-5.6 Sol was not the problem during a researcher’s ripgrep investigation—the separate cybersecurity classifier was. After repeated refusals, Daniel Fox Franke switched to Z’ai GLM 5.2 and Moonshot AI’s Kimi K3, which helped trace the recurring segmentation fault to a suspected Linux kernel bug.

Source

Public CVE-2026-53264 exploit turns an AI-assisted Linux bug into root

Par : IT News
28 juillet 2026 à 16:58
Public CVE-2026-53264 exploit turns an AI-assisted Linux bug into root
A publicly released exploit for Linux kernel CVE-2026-53264 can escalate a local user to root on compatible CentOS Stream 9 systems. AI helped identify the traffic-control race and refine the exploit, but unprivileged namespaces, specific kernel options, and a matching kernel build are still required.

Source

Portmaster : le pare-feu applicatif open source pour Windows et Linux

27 juillet 2026 à 18:00

Découvrez Portmaster, le pare-feu applicatif open source pour Windows et Linux : installation, règles par application, blocage des traceurs et DNS chiffré.

Le post Portmaster : le pare-feu applicatif open source pour Windows et Linux a été publié sur IT-Connect.

RefluXFS : cette faille dans XFS donne un accès root sur RHEL, CentOS et AlmaLinux

27 juillet 2026 à 07:39

RefluXFS (CVE-2026-64600) est une faille du système de fichiers XFS qui permet à un utilisateur local de devenir root sur RHEL. Ce qu'il faut savoir.

Le post RefluXFS : cette faille dans XFS donne un accès root sur RHEL, CentOS et AlmaLinux a été publié sur IT-Connect.

Debian opens a four-way fight over AI-assisted contributions

Par : IT News
26 juillet 2026 à 18:51
Debian opens a four-way fight over AI-assisted contributions
Debian has formally opened a General Resolution debate that could ban AI-assisted contributions across much of the project, rather than merely issuing guidance. The resolution, submitted July 22, 2026, covers Debian source packages, packaging work, Debian-maintained software such as lintian, web resources, documentation, translations, and official communications. That scope makes the decision relevant to anyone administering Debian systems because it could affect how packages and maintenance changes are produced and reviewed.

Source

NetworkManager 1.58 enhances IPv6-only networking and security

Par : IT News
23 juillet 2026 à 23:06
NetworkManager 1.58 enhances IPv6-only networking and security
NetworkManager 1.58 introduces significant improvements for IPv6-only environments, including native 464XLAT support to enable legacy IPv4 applications to function via a customer-side translator. The release also implements RFC 8925, allowing clients to signal an IPv6-only preference to networks, and ensures that IPv6 interfaces using prefix delegation via DHCPv6 are recognized as healthy without requiring a non-temporary address. These updates aim to mitigate the ongoing pressure of IPv4 address exhaustion in modern cloud and mobile network deployments.

Source

Critical RefluXFS vulnerability allows local privilege escalation on XFS filesystems

Par : IT News
23 juillet 2026 à 15:32
Critical RefluXFS vulnerability allows local privilege escalation on XFS filesystems
The RefluXFS vulnerability, tracked as CVE-2026-64600, is a serious race-condition flaw residing in the Linux kernel’s XFS filesystem copy-on-write path. Affecting kernel versions 4.11 and later, the bug allows an unprivileged local user to overwrite protected system files by exploiting a timing window during concurrent direct I/O operations. Because the manipulation occurs at the block layer, it effectively bypasses common security controls, including SELinux, kernel lockdown, and standard memory protections.

Source

Accès root : une faille dans snap-confine expose les machines Ubuntu

23 juillet 2026 à 10:46

La CVE-2026-8933 est une faille dans snap-confine qui donne à un utilisateur local un accès root sur Ubuntu. Voici comment se protéger.

Le post Accès root : une faille dans snap-confine expose les machines Ubuntu a été publié sur IT-Connect.

Critical privilege escalation vulnerability found in Ubuntu snap-confine

Par : IT News
22 juillet 2026 à 22:26
Critical privilege escalation vulnerability found in Ubuntu snap-confine
A high-severity local privilege escalation vulnerability, tracked as CVE-2026-8933, has been identified in the snap-confine component of Ubuntu’s snapd package. This flaw affects default installations of Ubuntu Desktop versions 24.04, 25.10, and 26.04 that utilize the set-capabilities model. The vulnerability stems from a race condition introduced during a recent security-hardening update, which inadvertently allows unprivileged users to gain root access.

Source

Massive surge in Linux kernel CVEs sparks debate on vulnerability management

Par : IT News
22 juillet 2026 à 21:17
Massive surge in Linux kernel CVEs sparks debate on vulnerability management
The Linux kernel team recently published 432 Common Vulnerabilities and Exposures (CVEs) over a two-day period, creating a significant challenge for system administrators. This sudden influx of security reports has fueled speculation that AI-assisted bug hunting is accelerating the discovery of kernel flaws. Maintainers have noted that the sheer volume of these reports is becoming increasingly difficult to manage manually.

Source

Hardware encryption on laptop drives needs verification, not trust

Par : IT News
21 juillet 2026 à 11:41
Hardware encryption on laptop drives needs verification, not trust
Hardware-encrypted SSDs sold under the TCG Opal2 standard cannot be assumed safe just because they ship with encryption features turned on. Researchers tested 38 drives from multiple vendors and found broken or weak behavior, including predictable random numbers, flawed PSID reset tokens, and, on some Lenovo OEM drives, a tweak value reused across the whole disk. One drive firmware issue was fixed by Micron, but many other reports were already known, unpatched, unsupported, or ignored.

Source

Red Hat enables two-node OpenShift HA for edge without arbiter hardware

Par : IT News
20 juillet 2026 à 12:27
Red Hat enables two-node OpenShift HA for edge without arbiter hardware
Red Hat has developed a two-node configuration for high-availability OpenShift deployments at the edge to cut hardware costs that customers find prohibitive when powering and maintaining a third node across many sites. OpenShift is Red Hat's enterprise Kubernetes platform for running containers and related workloads. Previously a lightweight arbiter device was required to maintain quorum and prevent split-brain scenarios in which both nodes act as primary after a connectivity loss.

Source

AMDGPU driver regression causes severe performance drops on Linux

Par : IT News
16 juillet 2026 à 19:20
AMDGPU driver regression causes severe performance drops on Linux
A regression in the open-source AMDGPU driver is causing significant performance degradation across several major Linux distributions, including Ubuntu, Fedora, and Arch. The issue stems from a bug in the Linux 7.0 kernel series that mismanages GPU power profiles and clock settings. This flaw can allow GPU core frequencies to exceed manufacturer limits, triggering the kernel to throttle the device to prevent damage.

Source

Secure Boot : 11 shims signés par Microsoft permettaient de contourner la protection

16 juillet 2026 à 13:45

ESET a identifié 11 shims UEFI signés par Microsoft et jamais révoqués. Copier l'un de ces binaires suffisait à contourner Secure Boot sur Linux ou Windows.

Le post Secure Boot : 11 shims signés par Microsoft permettaient de contourner la protection a été publié sur IT-Connect.

❌
❌