Vissza a www.andrews.hu-ra

    [guru] Fwd: [abhisek.datta@gmail.com: Linux sys_prctl LKM based hotfix]


    DATE: Mon, 17 Jul 2006 15:58:20 +0200
    Hotfix jelent meg a 2.6-os Linux Kernel sys_prctl() hibájának javítására.
    
    
    
    --- Begin Message ---
    Hello,

    Recently a critical vulnerability/behavioural flaw has been discovered
    in sys_prctl() in kernel/sys.c in Linux kernel.

    Exploitation of this bug may lead a local attacker to gain root
    privileges on systems running a vulnerable version of the linux kernel.

    Original advisory from RedHat Security Team:
    http://rhn.redhat.com/errata/RHSA-2006-0574.html

    Attached is a LKM based hotfix which should prevent exploitation of
    this bug using the publicly used techniques.

    This hotfix is not sufficiently tested for production level
    deployment. So please use at your own risk although trusted sources
    has confirmed that this hotfix does work without any problem.

    -abhisek

    Attachment: linux_prctl_lkm.tar.gz
    Description: GNU Zip compressed data


    --- End Message ---

    Vissza a www.andrews.hu-ra