To access material, start machines and answer questions login.
Set up your virtual environment
The identifier -2023-4911 has been assigned to The Qualys Threat Research Unit (TRU) (opens in new tab) on October 3, 2023, due to a critical security flaw in the GNU C Library's dynamic loader, known as ld.so. This vulnerability poses a significant risk since it allows escalating the privileges of a logged-on user and obtaining full control of the vulnerable instance.
This vulnerability was introduced in glibc version 2.34 through commit 2ed18c. The vulnerability affects recent versions of major Linux distributions such as RHEL, Ubuntu, Fedora, Debian, Amazon Linux, Gentoo and any other distribution that uses glibc.
To deploy the attached VM, press the green Start Lab Machine button at the top of the task and connect to the machine via with the following credentials:

| Username | nopriv |
| Password | Password321 |
Ready to learn Cyber Security?
The Looney Tunables room is only available for Premium or Max subscribers. Signup now to access more than 500 free rooms and learn cyber security through a fun, interactive learning environment.
Already have an account? Log in

