OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Local root through vulnerability in ping on linux.
From: Murvai-Buzogany Laszlo (scissorsHELL.SATIMEX.TVNET.HU)
Date: Mon Aug 21 2000 - 05:33:50 CDT


Hi there!

I have tested my system against this issue. I send you the output:

$ uname -a
        Linux hell 2.2.15 #2 Thu May 4 20:17:25 CEST 2000 i586 unknown
$ ping -c 1 -s 65690 localhost

ping: Operation not permitted

The system is a Debian 2.2.

$ which ping
/bin/ping

$ ls -la /bin/ping
-rwsr-xr-x 1 root root 14896 Apr 24 18:00 /bin/ping

Best regards,

        scissors

--