All of lore.kernel.org
 help / color / mirror / Atom feed
From: Nuno Silva <nuno.silva@vgertech.com>
To: erik@hensema.net
Cc: linux-kernel@vger.kernel.org
Subject: Re: How to fix the ptrace flaw without rebooting
Date: Fri, 04 Apr 2003 07:19:20 +0100	[thread overview]
Message-ID: <3E8D23E8.4060508@vgertech.com> (raw)
In-Reply-To: <slrnb8oaad.j0h.erik@bender.home.hensema.net>

Hello!

Erik Hensema wrote:
> 
> If you can't reboot to apply a security fix, you've got a serious problem.
> 
> A better fix in a running system is to simply disable dynamic module
> loading: echo /no/such/file > /proc/sys/kernel/modprobe
> At the very least you can be sure your machine won't crash this way ;-)
> 

IIRC, dynamic module loading is not required to exploit all the bugs 
present in ptrace. Luckly all the exploits floating around require kmod :)

Regards,
Nuno Silva


  reply	other threads:[~2003-04-04  6:09 UTC|newest]

Thread overview: 6+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2003-04-03 12:05 How to fix the ptrace flaw without rebooting Chuck Ebbert
2003-04-03 12:30 ` Erik Hensema
2003-04-04  6:19   ` Nuno Silva [this message]
  -- strict thread matches above, loose matches on Subject: below --
2003-04-04 11:18 Chuck Ebbert
2003-04-04 11:15 ` Alan Cox
2003-04-06  1:28   ` Paul Jakma

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=3E8D23E8.4060508@vgertech.com \
    --to=nuno.silva@vgertech.com \
    --cc=erik@hensema.net \
    --cc=linux-kernel@vger.kernel.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.