Linux vmsplice Local Root Exploit (2.6.17 - 2.6.24.1)

Discussion in 'Security' started by InFloW, Feb 11, 2008.

  1. #1
    Well it's that time again for an essentially 0-day exploit. Some hosts have got hit by this already including HostGator (http://forums.hostgator.com/showthread.php?t=27629). Although I wouldn't say it's any hosts fault if they got hit by it yesterday

    Some distributions it affects that a lot of people run:
    CentOS5: http://bugs.centos.org/view.php?id=2667
    Red Hat Enterprise 5: https://bugzilla.redhat.com/show_bug.cgi?id=432251

    I would advise everyone apply the patch http://home.powertech.no/oystein/ptpatch2008/ if your distribution is affected.

    Other discussions I know of right now: http://www.webhostingtalk.com/showthread.php?t=670497
     
    InFloW, Feb 11, 2008 IP
  2. WM7

    WM7 Peon

    Messages:
    778
    Likes Received:
    112
    Best Answers:
    0
    Trophy Points:
    0
    #2
    WM7, Feb 14, 2008 IP
  3. InFloW

    InFloW Peon

    Messages:
    1,488
    Likes Received:
    39
    Best Answers:
    0
    Trophy Points:
    0
    #3
    RHEL5 and CentOS5 both now have kernel updates available that fix the problem. I imagine it's the same for most distributions at this point.
     
    InFloW, Feb 14, 2008 IP