Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access
Overview
Researchers have released a working exploit for a serious flaw in AnyDesk's Linux software that allows attackers to execute code remotely and gain root access without any user authentication. This vulnerability was patched in version 8.0.3 in June 2023, but the company described the fix vaguely as a bug that could cause crashes, failing to assign a CVE identifier. Users of AnyDesk on Linux systems are at risk, as the exploit can be executed before a connection is approved. This situation raises concerns about the transparency of security updates and the potential for malicious exploitation if users do not update their software promptly.
Key Takeaways
- Active Exploitation: This vulnerability is being actively exploited by attackers. Immediate action is recommended.
- Affected Systems: AnyDesk Linux version prior to 8.0.3
- Action Required: Update to AnyDesk version 8.
- Timeline: Newly disclosed
Original Article Summary
Security researchers have published a full working exploit for a pre-authentication remote code execution flaw in AnyDesk Linux that gives attackers root access before anyone approves the connection. AnyDesk patched the flaw in version 8.0.3 in June, but its changelog described the fix only as "fixed a bug that could lead to a crash," with no CVE assigned and no security
Impact
AnyDesk Linux version prior to 8.0.3
Exploitation Status
This vulnerability is confirmed to be actively exploited by attackers in real-world attacks. Organizations should prioritize patching or implementing workarounds immediately.
Timeline
Newly disclosed
Remediation
Update to AnyDesk version 8.0.3 or later
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to Linux, CVE, Exploit, and 2 more.