Database/Kernel, userspace & hypervisor
util-linux (wall): WallEscape: escape-sequence injection via wall(1)
CVE-2024-28085Kernel, userspace & hypervisorcurated
Impact
WallEscape: escape-sequence injection via wall(1) - can spoof a sudo prompt and steal a password on a shared host
Who can reach it
Local user on a shared login/head node
What to do
Package update; no reboot. Only matters where multiple tenants share a login node
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.