Preferences


mindcrime
I use my laptop logged in as root, so that's not an issue!
eddd-ddde
The best is they absolutely can install drivers without your permission unless your system is encrypted. So it's even worse!
Dylan16807
Not really relevant, the threat being discussed is for multi-user systems.
rob_c
And your pulse audio service is running as which user now? This is a local exploit but for any system supporting the mentioned combination of services, aka a lot of them, including the RHEL derivatives and likely Ubuntu.

https://almalinux.org/blog/2025-06-18-test-patches-for-cve-2...

Dylan16807
> And your pulse audio service is running as which user now?

I'm not sure, I appear to be running pipewire. But assuming it's not my own account: not a user that will initiate an attack. A user account that allows logins or runs external servers would have to get compromised first, and at that point it can use the exploit directly with no need to touch pulseaudio.

If there's only one directory in your /home, it's very unlikely the urge for admins to patch this is directed at you.

shakna
Pipewire runs under the pipewire user, managed by systemd or OpenRC. Which means any of their managed processes can start a new pipewire user process.

A local priv-sec is one exploit [0] away from a remote one.

[0] https://www.bleepingcomputer.com/news/security/hackers-explo...

Dylan16807
> Pipewire runs under the pipewire user, managed by systemd or OpenRC. Which means any of their managed processes can start a new pipewire user process.

The box I checked has no pipewire user and it's running under the account I logged in with.

> A local priv-sec is one exploit [0] away from a remote one.

That only matters for accounts that talk to the outside world.

If I'm the only user, I'm not depending on security features to keep my account and the pipewire account safe from each other. Privilege escalation is a big threat for systems that are running in a significantly different way.

shakna
If you play sound, such as from a browser, or a file you didn't record yourself, then your account is talking to the outside world.

This item has no comments currently.