Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-21 Thread Alexander Neumann
Hi, Guille -bisho- wrote: At least the 2.4.19 is vulnerable. A quick patch is to put a invalid binary on /proc/sys/kernel/modprobe instead of the real modprobe binary, and then you have time to compile out your kernel without having to run... :) That seems to work only for the exploit

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-21 Thread Marcin Owsiany
On Thu, Mar 20, 2003 at 05:29:56PM -0800, Jon wrote: On Thu, 2003-03-20 at 14:50, Tom Goulet (UID0) wrote: Are the Debian kernels vulnerable to this hole? This post to BugTraq by Andrzej Szombierski (who found the problem) includes a sample exploit for x86. You can use it to see if

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-21 Thread Ralf Dreibrodt
Hi, Jon wrote: On Thu, 2003-03-20 at 14:50, Tom Goulet (UID0) wrote: Are the Debian kernels vulnerable to this hole? This post to BugTraq by Andrzej Szombierski (who found the problem) includes a sample exploit for x86. You can use it to see if you are vulnerable.

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-21 Thread Christian Hammers
Hello On Fri, Mar 21, 2003 at 08:52:36AM +0100, Alexander Neumann wrote: That seems to work only for the exploit provided by him, but not for the isec proof-of-concept exploit. It's a better workaround to use the npt module from http://www.securiteam.com/tools/5SP082K5GK.html . This module

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-21 Thread Phillip Hofmeister
A patch I consider to be from an authorative site is available (for 2.4.20) at: http://www.kernel.org/pub/linux/kernel/v2.4/testing/cset/cset-1.1076.txt -- Phil PGP/GPG Key: http://www.zionlth.org/~plhofmei/ wget -O - http://www.zionlth.org/~plhofmei/key.txt | gpg --import -- Excuse #150: Loop

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-21 Thread Marcin Owsiany
On Thu, Mar 20, 2003 at 05:29:56PM -0800, Jon wrote: On Thu, 2003-03-20 at 14:50, Tom Goulet (UID0) wrote: Are the Debian kernels vulnerable to this hole? This post to BugTraq by Andrzej Szombierski (who found the problem) includes a sample exploit for x86. You can use it to see if

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-21 Thread Ralf Dreibrodt
Hi, Jon wrote: On Thu, 2003-03-20 at 14:50, Tom Goulet (UID0) wrote: Are the Debian kernels vulnerable to this hole? This post to BugTraq by Andrzej Szombierski (who found the problem) includes a sample exploit for x86. You can use it to see if you are vulnerable.

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-21 Thread Christian Hammers
Hello On Fri, Mar 21, 2003 at 08:52:36AM +0100, Alexander Neumann wrote: That seems to work only for the exploit provided by him, but not for the isec proof-of-concept exploit. It's a better workaround to use the npt module from http://www.securiteam.com/tools/5SP082K5GK.html . This module

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-21 Thread Phillip Hofmeister
A patch I consider to be from an authorative site is available (for 2.4.20) at: http://www.kernel.org/pub/linux/kernel/v2.4/testing/cset/cset-1.1076.txt -- Phil PGP/GPG Key: http://www.zionlth.org/~plhofmei/ wget -O - http://www.zionlth.org/~plhofmei/key.txt | gpg --import -- Excuse #150: Loop

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-20 Thread Guille -bisho-
Howcome I don't see a Debian security advisory about the recently-found ptrace hole in Linux? Is it not really a hole? Or something? I think there should be an announcement even if the Debian kernels are not vulnerable, to explain that they're not. Are the Debian kernels vulnerable to this

howcome there's no DSA for the latest Linux ptrace hole?

2003-03-20 Thread Tom Goulet (UID0)
Hiya, Howcome I don't see a Debian security advisory about the recently-found ptrace hole in Linux? Is it not really a hole? Or something? I think there should be an announcement even if the Debian kernels are not vulnerable, to explain that they're not. Are the Debian kernels vulnerable to

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-20 Thread Jon
On Thu, 2003-03-20 at 14:50, Tom Goulet (UID0) wrote: Are the Debian kernels vulnerable to this hole? This post to BugTraq by Andrzej Szombierski (who found the problem) includes a sample exploit for x86. You can use it to see if you are vulnerable.

Re: howcome there's no DSA for the latest Linux ptrace hole?

2003-03-20 Thread Guille -bisho-
Howcome I don't see a Debian security advisory about the recently-found ptrace hole in Linux? Is it not really a hole? Or something? I think there should be an announcement even if the Debian kernels are not vulnerable, to explain that they're not. Are the Debian kernels vulnerable to this