Re: [Florian.Weimer@RUS.UNI-STUTTGART.DE: Re: Linux kernel sysctl() vulnerability]
Ethan Benson <erbenson@alaska.net> writes:
> i hope that Alan Cox either releases 2.2.19 soon or an errata patch to
> 2.2.18 to fix these, i like many do not use distribution kernels.
I've derived a 2.2.18-compatible patch for the ptrace() issue:
http://cert.uni-stuttgart.de/files/fw/linux-2.2.18-ptrace.diff
(It's based on Alan Cox's fixes for Red Hat, which unfortunately do
not apply cleanly to a stock 2.2.18 kernel.)
My other patch posted to BUGTRAQ is of questionable quality (it should
do the right thing, however).
--
Florian Weimer Florian.Weimer@RUS.Uni-Stuttgart.DE
University of Stuttgart http://cert.uni-stuttgart.de/
RUS-CERT +49-711-685-5973/fax +49-711-685-5898
Reply to: