Linux Kernel < 2.6.37-rc2 ACPI custom_method Privilege Escalation


Attenzione a tutti i linuxiani, un exploit che affligge ogni versione del kernel linux dalla 2.6.0 sino alla 2.6.37-rc2 sono tutti vulnerabili a questo exploit che permette l'attivazione di una shell di root con qualsiasi utente e qui vi posto il commento

***
This custom_method file allows to inject custom ACPI methods into the
ACPI interpreter tables. This control file was introduced with world writeable
***

E qui il sorgente dell'exploit

http://securityreason.com/securityalert/7977

se volete potete aggiortnare il vostro kernel all'ultima versione disponibile ke si è arrivati alla RC7 per il kernel 2.6.37

o al massimo installateci una patch

EDIT: a me non è vulnerabile:_
KinG-InFeT ~ # gcc exploit.c -o exploit
exploit.c: In function 'main':
exploit.c:230: warning: integer constant is too large for 'long' type
KinG-InFeT ~ # ./exploit
[+] resolving required symbols...
[+] checking for world-writable custom_method...
[-] custom_method not found, kernel is not vulnerable!
KinG-InFeT ~ #



Categories: Linux ~ Viewed: 901 ~ Date: 28/12/10 ~ Author: KinG-InFeT



>:[Comment]



Name:


Comment:


- Reload Captcha

Enter Code Captcha.: