public inbox for linux-kernel@vger.kernel.org
 help / color / mirror / Atom feed
From: Baruch Even <baruch@ev-en.org>
To: John M Collins <jmc@xisl.com>
Cc: Linux Kernel Mailing List <linux-kernel@vger.kernel.org>
Subject: Re: Exploit in 2.6 kernels
Date: Tue, 12 Apr 2005 13:24:25 +0100	[thread overview]
Message-ID: <425BBDF9.9020903@ev-en.org> (raw)
In-Reply-To: <1113298455.16274.72.camel@caveman.xisl.com>

You can find the source at 
http://www.securiteam.com/exploits/5VP0N0UF5U.html

The fix: 
http://linux.bkbits.net:8080/linux-2.6/cset@422dd06a1p5PsyFhoGAJseinjEq3ew?nav=index.html|ChangeSet@-1d

CAN: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-0736

John M Collins wrote:
> Please CC any reply to jmc AT xisl.com as I'm not subscribed - thanks
> 
> We had 5 machines broken into last night all but one with kernel 2.6.8
> and found a binary "krad-no-longer-private.c" had  been downloaded
> 
> It contains the string:
>  
> k-rad.c - linux 2.6.* CPL 0 kernel exploit 
> Discovered Jan 2005 by sd <sd@fucksheep.org>
> 
> If you want to look at it, I've copied it (with mode set to 444 of
> course) to www.xisl.com/hack
> 
> Hope that is helpful
> 


  reply	other threads:[~2005-04-12 12:28 UTC|newest]

Thread overview: 34+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2005-04-12  9:34 Exploit in 2.6 kernels John M Collins
2005-04-12 12:24 ` Baruch Even [this message]
2005-04-12 15:00   ` John M Collins
2005-04-12 21:08     ` Chris Wright
2005-04-12 21:32       ` John M Collins
2005-04-13  5:28         ` Valdis.Kletnieks
2005-04-13  9:47         ` Helge Hafting
2005-04-13 12:59           ` Lennart Sorensen
2005-04-13 13:06             ` Lars Marowsky-Bree
2005-04-13 13:23               ` Lennart Sorensen
2005-04-13 14:01                 ` John M Collins
2005-04-16  2:32                   ` Adrian Bunk
2005-04-13 15:22                 ` Chris Friesen
2005-04-14 14:01                   ` Helge Hafting
2005-04-20 18:17                     ` nVidia stuff again Doug Ledford
2005-04-20 23:12                       ` Dave Airlie
2005-04-21 11:23                         ` Helge Hafting
2005-04-21 12:15                         ` Doug Ledford
2005-04-21 12:54                           ` Dave Airlie
2005-04-21 13:35                           ` Lennart Sorensen
2005-04-21 14:43                             ` Manu Abraham
2005-04-21 21:17                               ` J.A. Magallon
2005-04-22 14:44                                 ` Arjan van de Ven
2005-04-15 15:00                 ` Exploit in 2.6 kernels Alan Cox
2005-04-15 16:06                   ` Dave Airlie
2005-04-15 16:19                     ` Duncan Sands
2005-04-14 12:46             ` Helge Hafting
2005-05-05 22:00               ` Olaf Titz
2005-04-13 13:02         ` Lennart Sorensen
2005-04-13 14:26           ` Eric Rannaud
2005-04-13 14:41             ` Lennart Sorensen
2005-04-14 20:02               ` Greg Folkert
2005-04-14 22:27                 ` John M Collins
2005-05-09 18:37     ` Alessandro Salvatori

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=425BBDF9.9020903@ev-en.org \
    --to=baruch@ev-en.org \
    --cc=jmc@xisl.com \
    --cc=linux-kernel@vger.kernel.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox