OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-disclosure] [ GLSA 200611-03 ] NVIDIA binary graphics driver: Privilege escalation vulnerability

From: Raphael Marichez (falcogentoo.org)
Date: Mon Nov 13 2006 - 17:10:02 CST


> um ... doesn't that make it a *remote* privilege escalation ?

in a certain way... you're right... although that requires the user
complicity, strictly speaking, you're right.

The guy who would manage to remotely root a box with that vulnerability would
be really good. The real serious risk is local only. (think about all
that unpatched linux boxes in the universities...)

Cheers,
--
Raphaël Marichez aka Falco

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iD8DBQFFWPtKIS4GNEW6wBQRAiGnAJ9NrtJSNVn6TgCaFajm3c66kfC/0ACbBgMQ
nU/E+KiKjGqVMqrp1QvNb34=
=L9ls
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/