[CentOS] local root exploit

Valent Turkovic valent.turkovic at gmail.com
Fri Feb 15 18:34:17 UTC 2008


On Mon, Feb 11, 2008 at 11:58 AM, kfx <kadafax at gmail.com> wrote:
>
> Valent Turkovic wrote:
>  > I saw that there is a local root exploit in the wild.
>  > http://blog.kagesenshi.org/2008/02/local-root-exploit-on-wild.html
>  >
>  > And I see my centos box still has:  2.6.18-53.1.4.el5
>  >
>  > yum says there are no updates... am I safe?
>  >
>  > Valent.
>  No you're not... and we are a lot in this very embarrassing situation...
>
>  You can compile (you need kernel-pae-devel's rpm) and insmod this kernel
>  module while waiting for redhat to push out a new kernel and then that
>  centos reroll it.
>  http://home.powertech.no/oystein/ptpatch2008/
>

I still see no kernel updates for Centos and I got two Fedora 8 kernel
updates since this exploit happened.

Is my yum broken?

I tried
yum clean all
yum update

and still nothing :(
-- 
http://kernelreloaded.blog385.com/
linux, blog, anime, spirituality, windsurf, wireless
registered as user #367004 with the Linux Counter, http://counter.li.org.
ICQ: 2125241, Skype: valent.turkovic



More information about the CentOS mailing list