Linux kernel vulnerabilities

Linux kernel vulnerabilities

Linux Server About Us Links Downloads Contact Us Terms of use SiteMap
Linux kernel vulnerabilities
Linux kernel vulnerabilities

 

You are here: Linux Server >>Linux kernel vulnerabilities

Linux kernel vulnerabilities article lists.

Linux kernel vulnerabilities

Cracks in Linux Kernel Plugged




The maintainers of the Linux kernel have released a new version of the 2.4 series kernel to fix two security vulnerabilities, including one that enables attackers to escalate their privilege level and run arbitrary code.

Nearly a day after researchers disclosed the vulnerabilities, a young computer engineer posted proof-of-concept exploit code for one of the flaws—a virtual memory vulnerability—to a mailing list. The code, designed to run on x86 machines, was posted on the BugTraq security list.

The more serious of the two vulnerabilities is in a system call that deals with the way that addressable space is allocated and shifted in virtual memory areas. Because of a faulty bounds check, a local attacker could exploit this flaw to run his own code on the machine or disrupt other areas of the computer's virtual memory, according to an advisory posted Monday by iSec Security Research, a Polish security organization.

The authors of the bulletin said that they have developed exploit code for the vulnerability and have found two separate attack vectors in the Linux 2.4 kernel.

This vulnerability is not found in the 2.6 series kernel, which is separate from the 2.4 series. Version 2.4.24 is the latest updated release that includes the security fixes.

The other flaw that's fixed in the new version relates to a device driver that can leak memory information to some unprivileged users.

Check out eWEEK.com's Security Center at http://security.eweek.com for security news, views and analysis.

(Editor's Note: This story has been updated since its original posting to include information about the posting of exploit code.)

Copyright © 2004 Ziff Davis Media Inc. All Rights Reserved. Originally appearing in eWEEK.

Linux kernel vulnerabilities Related Links
Linux kernel archiveLinux kernel 2.6
Linux compile kernel howLinux kernel version
Linux kernel howtoLinux kernel upgrade
Linux kernel developmentHow to patch a linux kernel
How to update linux kernelLinux kernel source
Linux kernel orgUnderstanding linux kernel
Compiling linux kernelLinux kernel source code
Linux kernel internalsPort linux kernel
Build linux kernelLinux kernel 2.6.10
Understanding linux kernel pdfLinux c++ compiler
Linux c++ ideDebian gnu linux
Config debian linux networkLinux anti virus software
Anti linux para virusLinux news reader
Linux weekly newsLinux at ibm news
Linux online news industryLinux online training
Linux training in mumbaiLinux training in india
Linux plus certification trainingLinux training cd
Linux plus online training courseUt2003 linux dedicated server
Unreal tournament dedicated server linuxCall of duty linux dedicated server
Linux recovery historyInstall program linux
How to install program in linuxFirefox install linux
Install linux softwareInstall java linux
Oracle linux installRebol cgi linux how install
Rebold cgi linux how installHow to install mysql linux
Install xp linuxLinux network install
 
©2005 All Rights Reserved   Linux Server