OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: 2.2.14 Kernel exec/open bug (?)
From: The Cr0W (crackerCRACKER.HU)
Date: Fri May 05 2000 - 12:31:04 CDT


Hello,

While browsing the redhat updates pages yesterday i've found
http://www.redhat.com/support/errata/RHBA-2000018-10.html which reads:

"2. Problem description:
       The following problems have been fixed in this kernel release:
[...]
4.Exec bug fixes a problem where any user on the system could open any file or
device
           for side effects on open()"

I couldn't obtain any information on this bug on linux.com, slashdot.org,
linuxhq.com, securityfocus, etc., so if someone can tell me more about this,
drop an email to anyadkapu.hu please!

Regards,
Tamas Foldi

. . _ __ _____________________________________________________ __ _ . .
Foldi Tamas - Perl Programmer - Unix System Administrator - WWW.KAPU.HU
tamaskapu.hu / crowlinuxfreak.com / (+3630) 221-7477 / PGP:0x6C244D70
 For more info about hungarian security scene, conntact Anyad SDI team