hacking security forum

Re: [Full-Disclosure] Re: Second critical mremap() bug found in all Linux kernels

From: Daniel Lorch <ml-daniel@lorch.cc>
Date: Wed Feb 18 2004 - 18:52:18 EST

hi

> > This PoC exploit can be used to check if a Linux system is vulnerable
> > to the second do_mremap() bug; the code has only been tested on Linux
> > version 2.4.22 so far.
>
> Did this make your box unstable? Is it resonably safe to run it?

Seems to be safe to run. At least it didn't crash my

   daniel@warp:~$ uname -a
   Linux warp 2.4.23 #1 Sat Jan 17 14:51:13 CET 2004 i686 GNU/Linux

but it reported a "kernel BUG at mmap.c:1197!".

daniel

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html
Received on Wed Feb 18 19:38:54 2004

This archive was generated by hypermail 2.1.8 : Wed Feb 18 2004 - 20:01:03 EST

Custom Search