Hello all,

 

I know the do_brk vulnerability is “a thing of the past” but, I just tried out the exploit on one of my vservers just to see what happened.

 

[EMAIL PROTECTED]:~$ id

uid=1009(lms) gid=100(users) groups=100(users)

[EMAIL PROTECTED]:~$ ./kernel

[-] Unable to change page protection: Cannot allocate memory

[-] Unable to exit, entering neverending loop.

 

[1]+� Stopped���������������� ./kernel

[EMAIL PROTECTED]:~$ uname -a

Linux mail.whocares.org 2.4.21-ctx17 #1 SMP Tue Sep 16 15:04:08 WEST 2003 i686 GNU/Linux

[EMAIL PROTECTED]:~$

 

And now for a developer question: is a local kernel root exploit able to break the vserver environment?

 

If a normal user was to successfully exploit a vserver with a local exploit would he:

a)       be root on the vserver?

b)       Be root on the root server?

c)       None of the above. Aliens would invade earth and it would rain chocolate candy…heh

 

Best,

+-------------------------------------------

| Lu�s Miguel Silva

| Network Administrator@ ISPGaya.pt

| Rua Ant�nio Rodrigues da Rocha, 291/341

| Sto. Ov�dio • 4400-025 V. N. de Gaia

| Portugal

| T: +351 22 3745730/3/5� F: +351 22 3745738

| G: +351 93 6371253����� E: [EMAIL PROTECTED]

| H: http://lms.ispgaya.pt/

+-------------------------------------------

 

Reply via email to