Password Hashes Leaked via Linux Crash Handlers: The Truth Behind CVE-2025-5054 & 4598 episode artwork

EPISODE · Jun 2, 2025 · 16 MIN

Password Hashes Leaked via Linux Crash Handlers: The Truth Behind CVE-2025-5054 & 4598

from Daily Security Review · host Daily Security Review

In this episode, we unpack two newly disclosed Linux vulnerabilities—CVE-2025-5054 and CVE-2025-4598—discovered by the Qualys Threat Research Unit (TRU). These race condition flaws impact Ubuntu’s apport and Red Hat/Fedora’s systemd-coredump, exposing a little-known but critical attack vector: core dumps from crashed SUID programs.We dive into how these TOCTOU (Time-of-Check to Time-of-Use) race conditions let local attackers manipulate system timing to trick crash handlers into leaking sensitive data. While the CVSS score is a moderate 4.7, the implications are serious—core dumps can contain password hashes, encryption keys, or proprietary data from privileged processes.Join us as we discuss how the vulnerabilities work, which Linux distributions are affected, and how administrators can apply patches or disable SUID core dumps as a temporary fix. We also explore what this means for system hardening, local threat models, and the often-overlooked risk posed by debugging and crash-reporting tools.

Episode metadata supplied by the publisher feed · Published Jun 2, 2025

Embed this episode

NOW PLAYING

Password Hashes Leaked via Linux Crash Handlers: The Truth Behind CVE-2025-5054 & 4598

0:00 16:11

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Daily Security Review?

This episode is 16 minutes long.

When was this Daily Security Review episode published?

This episode was published on June 2, 2025.

Can I download this Daily Security Review episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!