meta_pixel
Tapesearch Logo
Log in
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

ISC StormCast for Tuesday, February 12th 2019

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

SANS ISC Handlers

Tech News, News

4.9754 Ratings

🗓️ 12 February 2019

⏱️ 5 minutes

🧾️ Download transcript

Summary

Daily 5 min cyber security news summary. News, patches, vulnerabilities and trends in information and network security. Docker runc Vulnerability; MacOS Privacy Flaw; Android Crypto Clipper Malware; Not an E-Mail Virus

Transcript

Click on a timestamp to play from that location

0:00.0

Hello, welcome to the Tuesday, February 12, 2019 edition of the Santernet Storm Center's Stormcast.

0:07.5

My name is Johannes Ulrich, and I'm recording from Jacksonville, Florida.

0:13.3

If you're using Docker, be aware a major vulnerability was announced in Docker that allows malicious code running in containers to gain

0:24.5

full route access on the host. The vulnerability is located in RunC. RunC is the runtime that

0:33.4

actually does operate your containers. So this is common code to many technologies like Docker,

0:41.3

Container D, Kubernetes, and such.

0:43.8

So if you're using any kind of container

0:47.4

that's based on Linux, which pretty much all of them are,

0:51.0

then you are probably vulnerable.

1:00.4

Now, at this point, patches have been released to GitHub, but have not necessarily been rolled out to all the distributions yet.

1:03.9

So something you should be looking out for.

1:06.7

Now, some distributions like, for example, Redhead, they are running Docker on a system that's

1:13.9

secured with SELinix.

1:15.9

And this can mitigate the exploit here in this case, but if you are not running SELinx on

1:22.6

the host or if you lessened, if you loosened up the configuration, like you're not

1:27.3

running it actually in enforcement mode, if you loosened up the configuration, like you're not running it actually

1:28.4

in enforcement mode, then you are vulnerable.

1:33.3

Now, Docker sort of emerged from LXC Linux containers.

1:37.3

And now, LXC is also vulnerable to this same type of vulnerability.

1:46.0

AlexC also released a patch. And now, according to the advisory, which really focuses on Docker and RunC,

1:52.0

the vulnerability is more difficult to exploit in LXC, but fundamentally the same vulnerability.

2:00.0

And one of the new security features advertised in Mac OS fundamentally the same vulnerability.

...

Please login to see the full transcript.

Disclaimer: The podcast and artwork embedded on this page are from SANS ISC Handlers, and are the property of its owner and not affiliated with or endorsed by Tapesearch.

Generated transcripts are the property of SANS ISC Handlers and are distributed freely under the Fair Use doctrine. Transcripts generated by Tapesearch are not guaranteed to be accurate.

Copyright © Tapesearch 2026.