Thanks to the Proxmox team for reviewing my report. At least they took it seriously, unlike the users on this forum who think that a Debian 11 installation is hacked simply because it's EOL (and no, the OpenSSH bug doesn't affect Debian 11; it's...
Ich sehe ( und das als bekennender KI-Luddit!) auch nicht so das Problem. Im Grunde sagt Debian, dass „aber die ki sagt, das passt so“ keine erlaubte Ausrede ist Bullshit abzuliefern ;)
OpenBSD hatte ja das Vergnügen mit einen Vibecoder, der...
Systems without current system updates can be hacked, nothing is "new" or "urgent" on this. And PVE7 and PVE8 won't get any security updates any more so it's somehow expected that they get owned. Even if you don't connect them directly to the...
The usual use of the zero-day term is for vulnerabilities that are being exploited while there is no fix yet (for a supported/current version). That is something the administrator cannot do much about. This vulnerability is probably already fixed...
In any case, I don't think this is a 0day vulnerability, because on this is happen due to out date servers and bad servers administration, to say the least.
Many of this vulnerabilities are well-know documented, such as kernel and ssh...
Hi,
you're right, either use shorter vm ids, less than 10 interfaces per vm or switch to the nftables backend, which doesn't use these fwbr-interfaces.
You can also create a bug entry at bugzilla.proxmox.com and hope that this gets fixed in the...
There is now a newer pve-manager with version 9.2.12 available on the pve-test repo and a backport of that as 8.4.22 for PVE 8's pvetest repo, matching our respective test repo of the ceph-squid and ceph-tentacle releases.
There is some better...
problem confirmed: https://forum.proxmox.com/threads/proxmox-virtual-environment-security-advisories.149331/page-4#post-867929
on
dpkg-query -W libpve-a*
libpve-access-control 6.4-3
the server was hacked too
same issue here but it crashes at 3% or 4%, sometimes it reaches at 45% and the pc reboots. pc: lenovo m720q, i3- 9100t, 16gb ram, 256gb samsung 970 evo plus NVME Gen3 i guess. tried this command: nomodeset pcie_aspm=off...
I'm currently trying to balance local disks with iSCSI disks, but I'm still getting errors.
There is something seriously bugged in PBS.
It can't be a disk IO problem, now only two servers are backed up on the iSCSI disks and still there are errors.
Welcome in this forum! Unfortunately you did not tell us anything specific about that "small server". How could we know anything about it???
What exact brand/type is it? Full spec? How is the SSD connected? Exact type of the SSD?
Generic ideas...
I have the same issue with my lenovo m720q, tried the same command, same problem, i booted a live debian 13 usb and managed to install debian 13 on the NVME and it went success in first try, but when i booted from that NVME, it rebooted when i...
My 2 cents:
No backups is unacceptable.
If your data is important then before anything - backup/copy those disk images to another medium, before proceeding.
Proxmox VE 7.4-17 has been EOL since 2024. Update that server.
We had the same. Hacked 2 servers pve 6 and 7 this night. Yes we know we have to update. Bit we wunder, because there is no non auth issue out for proxmox
Subject: PSA-2026-00043-1: Authentication bypass in EOL Proxmox VE 7 release
Advisory date: 2026-09-01
Packages: libpve-access-control
Affected: libpve-access-control >= 7.0-7 and < 8.0.4
Roughly corresponding to Proxmox VE 7.0 up to and...
Du hast "Das Geschäftsmodell der AI-Codeassistenten beruht auf systematischen Verstoßen gegen Urheberrecht und opensource-Lizenzen" sehr umständlich ausgedrückt :)
Weil auch wenn das Problem nicht grundsätzlich neu ist, erreicht es so doch eine...