The bug involves the way kernel-level routines such as sock_sendpage react when they are left unimplemented. Instead of linking to a corresponding placeholder, (for ex, sock_no_accept), the function pointer is left uninitialized. Sock_sendpage doesn't always validate the pointer before dereferencing it, leaving the OS open to local privilege escalation that can completely compromise the underlying machine.
More at: http://www.theregister.co.uk/2009/08/14/critical_linux_bug/ -- Bharathi S
"Linux developers have issued a critical update= for the open-source OS after researchers uncovered a vulnerability in its kernel that puts most versions built in the past eight years at risk of complete takeover. The bug involves the way kernel-level routines such as sock_sendpage react when they are left unimplemented. Instead of linking to a corresponding placeholder, (for example, sock_no_accept), the functi= on pointer is left uninitialized. Sock_sendpage doesn't always validate the pointer before dereferencing it, leaving the OS open to local privilege escalation that can completely compromise the underlying machine." More at: h= ttp://www.theregister.co.uk/2009/08/14/critical_linux= _bug/ Cheers Ed. -- Edgar D'Souza (http://= edgar.b.dsouza.googlepages.com/) ಠ_ಠmy GIMP-Python "Tear-off" plugin at: http://registry.gimp.org/<= wbr>node/10977 __._,_.___</div= > Messages in this topic (1) Reply (via web post) | Start a new topic Messages</a= > | Members= | Calendar *************************************************************** ********** ILUG-Goa's other mailing lists: http://groups= .yahoo.com/group/ilug-goa-announce LOW-VOLUME, ANNOUNCE LIST http://gro= ups.yahoo.com/group/teach-yourself-linux FOR NEWBIES http://groups.yaho= o.com/group/linuxgoahelp TECH HELP LIST http://gro= ups.yahoo.com/group/goa-floss-developer/ DEVELOPERS' LIST http://feeds.goa-india.org (RS= S-based news from across India) ========================= ========================= ================ 3D"Yahoo!<= /a> Change settings via the W= eb (Yahoo! ID required) Change settings via email: Switch delivery to Daily Dige= st | Switch format to Traditional Visit Your Group | Yahoo! Groups Terms of Use | Unsubscribe Recent Activ= ity * 1 New Members Visit Your Group Give Back Yahoo! for Good Get inspired by a good cause. Y! Toolbar Get it Free! easy 1-click access</= p> to your groups. Yahoo! Groups Start a group in 3 easy steps. Connect with others.<= /p> . __,_._,___
_______________________________________________ To unsubscribe, email [email protected] with "unsubscribe <password> <address>" in the subject or body of the message. http://www.ae.iitm.ac.in/mailman/listinfo/ilugc
