Gentoo: kernel ptrace vulnerability
Summary
- - --------------------------------------------------------------------- GENTOO LINUX SECURITY ANNOUNCEMENT 200303-17 - - --------------------------------------------------------------------- FIXED VERSION : Kernels with patch applied
- - ---------------------------------------------------------------------
- From advisory:
"The Linux 2.2 and Linux 2.4 kernels have a flaw in ptrace. This hole allows local users to obtain full privileges. Remote exploitation of this hole is not possible. Linux 2.5 is not believed to be vulnerable."
Read the full advisory at: http://marc.theaimsgroup.com/?l=linux-kernel&m=104791735604202&w=2
SOLUTION
It is recommended that all Gentoo Linux users upgrade their kernels.
If you are running any of gentoo-sources, gs-sources, pfeifer-sources sparc-sources or xfs-sources updates are available. Sync your tree and run emergeto install the latest version of the package. Then compile and install your new kernel and reboot.
If you are using ...Read the Full Advisory
Resolution
References
Availability
Concerns
Background