Tomasz Wendlandt

Avatar

Tech blog

Local DoS on Linux 2.6.27.4

TuxOstatnio pisałem o kernelu 2.6.27. Okazuje się, że od paru dni krąży exploit pozwalający na lokalny atak denial of service na wersje starsze niż 2.6.27.5 .

The __scm_destroy function in net/core/scm.c in the Linux kernel 2.6.27.4, 2.6.26, and earlier makes indirect recursive calls to itself through calls to the fput function, which allows local users to cause a denial of service (panic) via vectors related to sending an SCM_RIGHTS message through a UNIX domain socket and closing file descriptors.

Źródło.

No Comments, Comment or Ping

Reply to “Local DoS on Linux 2.6.27.4”

Poznań

  • Cloud and Visibility OK
  • Temperature: -12°C
  • Visibility: 10km
  • Clouds: Cloud and Visibility OK
  • Wind: E at 11 km/h
  • Barometer: 1038 hPa
  • Humidity: 60.8%
  • Sunrise: 8:11 GMT+2
  • Sunset: 20:17 GMT+2