For some of the exploits out there, you need to compile the binary
statically... as to answer your question, I would presume root on the
local vserver, but if you modified the exploit to change the structures a
bit, it'd be root on the host machine.

> Hello all,
>
>
>
> I know the do_brk vulnerability is �a thing of the past� but, I just
> tried out the exploit on one of my vservers just to see what happened.
>
>
>
> [EMAIL PROTECTED]:~$ id
>
> uid=1009(lms) gid=100(users) groups=100(users)
>
> [EMAIL PROTECTED]:~$ ./kernel
>
> [-] Unable to change page protection: Cannot allocate memory
>
> [-] Unable to exit, entering neverending loop.
>
>
>
> [1]+  Stopped                 ./kernel
>
> [EMAIL PROTECTED]:~$ uname -a
>
> Linux mail.whocares.org 2.4.21-ctx17 #1 SMP Tue Sep 16 15:04:08 WEST
> 2003 i686 GNU/Linux
>
> [EMAIL PROTECTED]:~$
>
>
>
> And now for a developer question: is a local kernel root exploit able to
> break the vserver environment?
>
>
>
> If a normal user was to successfully exploit a vserver with a local
> exploit would he:
>
> a)       be root on the vserver?
>
> b)       Be root on the root server?
>
> c)       None of the above. Aliens would invade earth and it would rain
> chocolate candy�heh
>
>
>
> Best,
>
> +-------------------------------------------
>
> | Lu�s Miguel Silva
>
> | Network Administrator@ ISPGaya.pt
>
> | Rua Ant�nio Rodrigues da Rocha, 291/341
>
> | Sto. Ov�dio � 4400-025 V. N. de Gaia
>
> | Portugal
>
> | T: +351 22 3745730/3/5  F: +351 22 3745738
>
> | G: +351 93 6371253      E: [EMAIL PROTECTED]
>
> | H: http://lms.ispgaya.pt/
>
> +-------------------------------------------
>
>



_______________________________________________
Vserver mailing list
[EMAIL PROTECTED]
http://list.linux-vserver.org/mailman/listinfo/vserver

Reply via email to