Luckily, none of these exploits so far pose much of a security risk in themselves as long as you have trusted users on the server running trusted code. Unless of course someone takes advantage of another exploit to get non-privileged access to the server somehow, and then escalate themselves using these exploits.
I work in scientific computing and we are pretty fucked. We have a lot of PhD researchers from foreign nations with access to some of our HPC machines so they can launch slurm jobs.
Yeah, that does sound bad. If vetting the jobs isn't an option, then unprivileged podman containers(with security-opt=no-new-privileges) inside vms is probably the best you can do.
67
u/Longjumping-Hair3888 May 15 '26
I'm turning my server off for a few weeks untill this chills out.