Linux Kernel < 2.6.37-rc2 ACPI custom_method Privilege Escalation
Attenzione a tutti i linuxiani, un exploit che affligge ogni versione del kernel linux dalla 2.6.0 sino alla 2.6.37-rc2 sono tutti vulnerabili a questo exploit che permette l'attivazione di una shell di root con qualsiasi utente e qui vi posto il commento
***
This custom_method file allows to inject custom ACPI methods into the
ACPI interpreter tables. This control file was introduced with world writeable
***
E qui il sorgente dell'exploit
http://securityreason.com/securityalert/7977
se volete potete aggiortnare il vostro kernel all'ultima versione disponibile ke si è arrivati alla RC7 per il kernel 2.6.37
o al massimo installateci una patch
EDIT: a me non è vulnerabile:_
KinG-InFeT ~ # gcc exploit.c -o exploit
exploit.c: In function 'main':
exploit.c:230: warning: integer constant is too large for 'long' type
KinG-InFeT ~ # ./exploit
[+] resolving required symbols...
[+] checking for world-writable custom_method...
[-] custom_method not found, kernel is not vulnerable!
KinG-InFeT ~ #
Categories: Linux ~ Viewed: 2034 ~ Date: 28/12/10 ~ Author: KinG-InFeT
>:[Comment]
Name:ynynpbcic
Comment: jD5dBm <a href="http://geymkwzpmqgm.com/">geymkwzpmqgm</a>
Name:kfvhngw
Comment: XyEON2 , [url=http://pwxhhwwadhnz.com/]pwxhhwwadhnz[/url], [link=http://ulqpfltqghxx.com/]ulqpfltqghxx[/link], http://owzulwrvtyju.com/
Name:kywunighfd
Comment: qq232w <a href="http://ilmhapzguudt.com/">ilmhapzguudt</a>
Name:Sunny
Comment: That's an intelligent answer to a diffiuclt question xxx
Name:cuhazudja
Comment: sc0aAO , [url=http://bspsoriaeuxl.com/]bspsoriaeuxl[/url], [link=http://suapxfkxxftd.com/]suapxfkxxftd[/link], http://anxlltwqmnle.com/