[CentOS] local root exploit

kfx kadafax at gmail.com
Mon Feb 11 10:58:43 UTC 2008


Valent Turkovic wrote:
> I saw that there is a local root exploit in the wild.
> http://blog.kagesenshi.org/2008/02/local-root-exploit-on-wild.html
>
> And I see my centos box still has:  2.6.18-53.1.4.el5
>
> yum says there are no updates... am I safe?
>
> Valent.
No you're not... and we are a lot in this very embarrassing situation...

You can compile (you need kernel-pae-devel's rpm) and insmod this kernel 
module while waiting for redhat to push out a new kernel and then that 
centos reroll it.
http://home.powertech.no/oystein/ptpatch2008/



kfx
> _______________________________________________
> CentOS mailing list
> CentOS at centos.org
> http://lists.centos.org/mailman/listinfo/centos




More information about the CentOS mailing list