Re: Kernel security vulnerable

Franck Bui <[email protected]> Mon, 23 Jan 2012 20:56:00 +0100
Newsgroups gmane.linux.mandrake.cooker.devel
Message-ID <[email protected]>
Alexander Kazancev <[email protected]> writes:

> Frank - try run latest (in redhat bug) check program (correct) - it's say
> that problem still appear :(

Sorry I don't understand: do you mean you tried the
"correct_proc_mem_reproducer" prog from RH's bugzilla and it said that
your kernel is vulnerable ?

If so that's expected since no new kernel has been released yet and when
it will, this prog will still say your kernel is "vulnerable" since the
fix is not about removing write access entirely from /proc/<pid>/mem
file AFAIK.

Maybe you were confused by my previous email... I just said that the
exploit (not the 'correct_proc_mem_reproducer' thing) didn't work on my
machine for some reasons (need to investigate) but it doesn't mean that
we're not affected.

-- 
		Franck