Free Republic 3rd Qtr 2025 Fundraising Target: $81,000 Receipts & Pledges to-date: $36,004
44%  
Woo hoo!! And we're now over 44%!! Thank you all very much!! God bless.

Keyword: localexploit

Brevity: Headers | « Text »
  • Local Privilege Escalation On All Linux Kernels

    08/13/2009 10:09:28 PM PDT · by zeugma · 14 replies · 888+ views
    slashdot ^ | August 13, 2009 | Tavis Ormandy and Julien Tinnes
    From Slashdot: "Tavis Ormandy and Julien Tinnes have discovered a severe security flaw in all 2.4 and 2.6 kernels since 2001 on all architectures. 'Since it leads to the kernel executing code at NULL, the vulnerability is as trivial as it can get to exploit: an attacker can just put code in the first page that will get executed with kernel privileges.'" Note: this is a local exploit, not remote. Looks like the fix for this is in the current tree and is being run through the standard processes.  The above link includes all the gory details.
  • Linux 2.4.24 Release Fixes Root Vulnerability

    01/05/2004 1:19:04 PM PST · by zeugma · 13 replies · 113+ views
    slashdot ^ | 1-5-2004 | kernel.org
    Slashdot is reporting the following: "Linux Kernel 2.4.24 has been released and is available on kernel.org. It seems there's a bug in the mremap(2) system call, where a local user can get root privileges.The new version has been released only with the most important bugs fixed - the rest of the changes have been postponed (those changes include the XFS filesystem)."