Tomasz Wendlandt

Avatar

Tech blog

Local DoS on Linux 2.6.27.4

TuxOstatnio pisałem o kernelu 2.6.27. Okazuje się, że od paru dni krąży exploit pozwalający na lokalny atak denial of service na wersje starsze niż 2.6.27.5 .

The __scm_destroy function in net/core/scm.c in the Linux kernel 2.6.27.4, 2.6.26, and earlier makes indirect recursive calls to itself through calls to the fput function, which allows local users to cause a denial of service (panic) via vectors related to sending an SCM_RIGHTS message through a UNIX domain socket and closing file descriptors.

Źródło.

No Comments, Comment or Ping

Reply to “Local DoS on Linux 2.6.27.4”

Poznań

  • Cloud and Visibility OK
  • Temperature: 10°C
  • Visibility: 10km
  • Clouds: Cloud and Visibility OK
  • Wind: E at 9 km/h
  • Barometer: 1014 hPa
  • Humidity: 87.4%
  • Sunrise: 8:53 GMT+2
  • Sunset: 21:00 GMT+2