<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
  <channel>
    <title>Moshler's Favorite Links on Debian from Diigo</title>
    <link>http://www.diigo.com/user/Moshler/Debian</link>
    <pubDate>Sat, 03 May 2008 16:45:45 -0000</pubDate>
    <lastBuildDate>Sat, 03 May 2008 16:45:45 -0000</lastBuildDate>
    <item>
      <title>Multiple Linux flaws show that Linux also has kernel issues</title>
      <link>http://tech.groups.yahoo.com/group/TTLUG/message/17625</link>
      <description>&lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;strong&gt;Highlights and Sticky Notes:&lt;/strong&gt;&lt;p&gt;&lt;div class=&quot;content&quot;&gt;Nathan McFeters is a Senior Security Advisor for Ernst &amp;amp; Young's Advanced&lt;br /&gt;
Security Center in Chicago. The views and opinions expressed in this article are&lt;br /&gt;
his own and do not represent the views and opinions of Ernst &amp;amp; Young Advanced&lt;br /&gt;
Security Center or Ernst &amp;amp; Young, LLP. Nathan has performed web application,&lt;br /&gt;
deep source code, Internet, Intranet, wireless, dial-up, and social engineering&lt;br /&gt;
engagements for numerous clients in the Fortune 500 during his career at Ernst &amp;amp;&lt;br /&gt;
Young and has spoken at a number of prestigious conferences, including Black&lt;br /&gt;
Hat, DEFCON, ToorCon, and Hack in the Box. He can be found at his Pwn* blog and&lt;br /&gt;
XS-Sniper, a blog with Billy Rios. See his full profile and disclosure of his&lt;br /&gt;
industry affiliations.&lt;/div&gt;&lt;/p&gt;&lt;p&gt;&lt;div class=&quot;content&quot;&gt;Some of these look to be pretty serious bugs. The two newest do not have&lt;br /&gt;
security focus entries yet, but as far as I’m aware there currently exists no&lt;br /&gt;
public exploit code for this, which is a good thing. It’s also important to&lt;br /&gt;
note, but this should be obvious, this doesn’t just affect Debian, it’s simply&lt;br /&gt;
that the advisory came from Debian’s folks today… so make sure you’re fixing&lt;br /&gt;
your system up, whatever *Nix flavor you like.&lt;/div&gt;&lt;/p&gt;&lt;p&gt;&lt;div class=&quot;content&quot;&gt;For the stable distribution (etch), this problem has been fixed in version&lt;br /&gt;
2.6.18.dfsg.1-18etch3.&lt;br /&gt;
The unstable (sid) and testing distributions will be fixed soon.&lt;br /&gt;
We recommend that you upgrade your linux-2.6, fai-kernels, and user-mode-linux&lt;br /&gt;
packages.&lt;/div&gt;&lt;/p&gt;&lt;p&gt;&lt;div class=&quot;content&quot;&gt;Alexander Viro discovered a race condition in the directory notification&lt;br /&gt;
subsystem that allows local users to cause a Denial of Service (oops) and&lt;br /&gt;
possibly result in an escalation of privileges.&lt;/div&gt;&lt;/p&gt;&lt;p&gt;&lt;div class=&quot;content&quot;&gt;David Peer discovered that users could escape administrator imposed cpu time&lt;br /&gt;
limitations (RLIMIT_CPU) by setting a limit of 0.&lt;br /&gt;
CVE-2008-1375&lt;/div&gt;&lt;/p&gt;&lt;p&gt;&lt;div class=&quot;content&quot;&gt;CVE-2008-0007&lt;br /&gt;
Nick Piggin of SuSE discovered a number of issues in subsystems which register&lt;br /&gt;
a fault handler for memory mapped areas. This issue can be exploited by local&lt;br /&gt;
users to achieve a Denial of Service (DoS) and possibly execute arbitrary code.&lt;br /&gt;
CVE-2008-1294&lt;/div&gt;&lt;/p&gt;&lt;p&gt;&lt;div class=&quot;content&quot;&gt;CVE-2007-6694&lt;br /&gt;
Cyrill Gorcunov reported a NULL pointer dereference in code specific to the&lt;br /&gt;
CHRP PowerPC platforms. Local users could exploit this issue to achieve a Denial&lt;br /&gt;
of Service (DoS).&lt;/div&gt;&lt;/p&gt;&lt;p&gt;&lt;div class=&quot;content&quot;&gt;Dann Frazier of Debian posted to Full Disclosure today about four&lt;br /&gt;
vulnerabilities that allow local (this means you can’t do it over the Internet,&lt;br /&gt;
unless you’ve already compromised a user account in some way remotely, the same&lt;br /&gt;
applied to the Windows flaw that I spoke of, but there were questions around&lt;br /&gt;
what exactly local meant, it does not mean you have to sit at the box&lt;br /&gt;
physically) attacks against the kernel that result in arbitrary code execution&lt;br /&gt;
or Denial of Service conditions. The contents of his email are posted below:&lt;/div&gt;&lt;/p&gt;&lt;p&gt;&lt;div class=&quot;content&quot;&gt;Not to defend Microsoft, as kernel exploits that provide privileged access are&lt;br /&gt;
terrible flaws, but we had an interesting discussion in the talkbacks where&lt;br /&gt;
several people acted as if Microsoft was the only place that could’ve made such&lt;br /&gt;
mistakes. Well, the proof is in the pudding that this is a common flaw across&lt;br /&gt;
operating systems that is difficult to catch due to the complexities of kernel&lt;br /&gt;
code.&lt;/div&gt;&lt;/p&gt;&lt;p&gt;&lt;p&gt;&lt;strong&gt;Tags:&lt;/strong&gt; &lt;a href='http://www.diigo.com/user/moshler/Nathan+McFeters' rel='tag'&gt;Nathan McFeters&lt;/a&gt; &lt;a href='http://www.diigo.com/user/moshler/kernel' rel='tag'&gt;kernel&lt;/a&gt; &lt;a href='http://www.diigo.com/user/moshler/Linux' rel='tag'&gt;Linux&lt;/a&gt; &lt;a href='http://www.diigo.com/user/moshler/Debian' rel='tag'&gt;Debian&lt;/a&gt; &lt;/p&gt;&lt;p&gt;&lt;strong&gt;Posted by:&lt;/strong&gt; &lt;a href='http://www.diigo.com/user/moshler'&gt;moshler&lt;/a&gt;&lt;/p&gt;</description>
      <pubDate>Sat, 03 May 2008 16:45:45 -0000</pubDate>
    </item>
    <ttl>60</ttl>
  </channel>
</rss>