Discussion
Loading...

Post

  • About
  • Code of conduct
  • Privacy
  • About Bonfire
Max Maass :donor:
@hacksilon@infosec.exchange  ·  activity timestamp last week

Heads up for the #homelab / #selfhosting community: #minio has gone source-only and will no longer build new docker images, and the latest version of the image contains an 8.1/10 privilege escalation CVE. You may want to update to building the image yourself or switch out minio for something else.

Discussion on GitHub: https://github.com/minio/minio/issues/21647
Security advisory: https://github.com/minio/minio/security/advisories/GHSA-jjjj-jwhf-8rgr

#selfhosted #selfhost

GitHub

Privilege Escalation via Session Policy Bypass in Service Accounts and STS

### Summary A privilege escalation vulnerability allows service accounts and STS (Security Token Service) accounts with restricted session policies to bypass their inline policy restrictions when ...
  • Copy link
  • Flag this post
  • Block
Log in

Encryptr.net Social

This is a forward thinking server running the Bonfire social media platform.

LGBTQA+ and BPOC friendly.

Encryptr.net Social: About · Code of conduct · Privacy ·
Encryptr.net social · 1.0.0-rc.2.33 no JS en
Automatic federation enabled
  • Explore
  • About
  • Code of Conduct
Home
Login