Re: Kernel security vulnerable
Franck Bui <[email protected]> Mon, 23 Jan 2012 20:56:00 +0100
| Newsgroups | gmane.linux.mandrake.cooker.devel |
|---|---|
| Message-ID | <[email protected]> |
Alexander Kazancev <[email protected]> writes: > Frank - try run latest (in redhat bug) check program (correct) - it's say > that problem still appear :( Sorry I don't understand: do you mean you tried the "correct_proc_mem_reproducer" prog from RH's bugzilla and it said that your kernel is vulnerable ? If so that's expected since no new kernel has been released yet and when it will, this prog will still say your kernel is "vulnerable" since the fix is not about removing write access entirely from /proc/<pid>/mem file AFAIK. Maybe you were confused by my previous email... I just said that the exploit (not the 'correct_proc_mem_reproducer' thing) didn't work on my machine for some reasons (need to investigate) but it doesn't mean that we're not affected. -- Franck