Sept. 21, 2023, 2:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

On boot, the Pillar eve container checks for the existence and content of
“/config/authorized_keys�.

If the file is present, and contains a supported public key, the container will go on to open
port 22 and enable sshd with the given keys as the authorized keys for root login.

An attacker could easily add their own keys and gain full control over the system without
triggering the “measured boot� mechanism implemented by EVE OS, and without marking
the device as “UUDâ€� …

attacker boot container cve enable eve file key keys login open port own port public public key root

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)