OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Dailydave] Fun with things not said

From: Roman Medina-Heigl Hernandez (romanrs-labs.com)
Date: Wed Jul 19 2006 - 13:56:10 CDT


Dave Aitel escribió:
> I'm not sure if the distributions need to go hire a kernel guy or
> what, but that's not the correct explanation for the bug. We had Bas
> Alberts look at it, and his exploit has no such race condition.

Dave, you haven't told us how did you solve the write-privs-to-local-root
problem in your prctl exploit... yet :-)

--

Saludos,
-Roman

PGP Fingerprint:
09BB EFCD 21ED 4E79 25FB 29E1 E47F 8A7D EAD5 6742
[Key ID: 0xEAD56742. Available at KeyServ]
_______________________________________________
Dailydave mailing list
Dailydavelists.immunitysec.com
http://lists.immunitysec.com/mailman/listinfo/dailydave