Re: Fedora Legacy Test Update Notification: Kernel

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Sat, Feb 21, 2004 at 09:33:49AM -0800, Jesse Keating wrote:
> CAN-2004-0077:
> A flaw in return value checking in mremap() in the Linux kernel versions 
> 2.4.24 and previous that may allow a local attacker to gain root 
> privileges. No exploit is currently available; however this issue is 
> exploitable.

--- Begin Message ---
bugzilla@xxxxxxxxxx wrote:

> Paul Starzetz discovered a flaw in return value checking in mremap()
> in the Linux kernel versions 2.4.24 and previous that may allow a local
> attacker to gain root privileges. No exploit is currently available; 
> ...

There is an Proof-of-concept exploit available:

http://www.derkeiler.com/Mailing-Lists/Securiteam/2004-02/0052.html

Ulrich Keil
-- 
http://www.derkeiler.com
PGP Fingerprint: 5FA4 4C01 8D92 A906 E831  CAF1 3F51 8F47 1233 9AAD
Public key available at http://www.derkeiler.com/uk/pgp-key.asc

--- End Message ---

[Index of Archives]     [Fedora Development]     [Fedora Announce]     [Fedora Legacy Announce]     [Fedora Config]     [PAM]     [Fedora General Discussion]     [Big List of Linux Books]     [Gimp]     [Yosemite Questions]

  Powered by Linux