Bug#559107: closed by Petr Salinger petr.salin...@seznam.cz (Re: Bug#559107: Local root exploit in rtld)

2009-12-02 Thread Moritz Muehlenhoff
reopen 559107 retitle 559107 weaknesses in BSD PRNG algorithms thanks http://seclists.org/fulldisclosure/2009/Nov/371 Colin Percival posted a preliminary patch, a full advisory is announced for tomorrow. I suppose this affects Debian/KFreeBSD? No, the rtld (/lib/ld*.so) comes from

Bug#559107: Local root exploit in rtld

2009-12-01 Thread Moritz Muehlenhoff
Package: kfreebsd-7 Severity: grave Tags: security http://seclists.org/fulldisclosure/2009/Nov/371 Colin Percival posted a preliminary patch, a full advisory is announced for tomorrow. I suppose this affects Debian/KFreeBSD? One a side note, what's the status of CVE-2009-114[678] ? #483152 was

Bug#559107: Local root exploit in rtld

2009-12-01 Thread Thorsten Glaser
Moritz Muehlenhoff dixit: I suppose this affects Debian/KFreeBSD? Doesn't GNU eglibc come with its own ld.so? //mirabilos -- Sometimes they [people] care too much: pretty printers [and syntax highligh- ting, d.A.] mechanically produce pretty output that accentuates irrelevant detail in the