Re: [gentoo-hardened] latest kernel exploit patch for vmsplice coming?

2008-02-12 Thread Алексей Лесовский
uld not be running it as root! 2008/2/12 Алексей Лесовский <[EMAIL PROTECTED]>: Ok. I compiled this sources successful, and vhen I execute him I got next --- Linux vmsplice Local Root Exploit By qaaz --- [-] [EMAIL PROTECT

Re: [gentoo-hardened] latest kernel exploit patch for vmsplice coming?

2008-02-12 Thread Алексей Лесовский
[+] mmap: 0x51e7d000 .. 0x51eaf000 Ошибка сегментирования - Segmentation Fault I think PaX prevent exploit)) Алексей Лесовский пишет: Ok. I compiled this sources successful, and vhen I execute him I got next --- Linux vmsplice Local Root Exploit By qaaz

Re: [gentoo-hardened] latest kernel exploit patch for vmsplice coming?

2008-02-12 Thread Алексей Лесовский
пишет: On Tue, 2008-02-12 at 10:02 +0500, Алексей Лесовский wrote: Anyone, can send me compiled exploit? i tests my hardened hosts my gcc cannot compile sources Attatched is a slightly modified version of the exploit that should compile for you. (uses sysconf(_SC_PAGE_SIZE) rather than

Re: [gentoo-hardened] latest kernel exploit patch for vmsplice coming?

2008-02-11 Thread Алексей Лесовский
Anyone, can send me compiled exploit? i tests my hardened hosts my gcc cannot compile sources -- gentoo-hardened@lists.gentoo.org mailing list

Re: [gentoo-hardened] pax, core2duo, suspicious activity

2008-02-08 Thread Алексей Лесовский
No I don't change anymore. I only do next disable "Hide kernel symbols" in Grsecurity and enable CALLSYMS, and when I enable that, some settings by enabled too, and i dont,t touch them [EMAIL PROTECTED] пишет: On 8 Feb 2008 at 17:36, wrote: you must have changed something else as well,

Re: [gentoo-hardened] pax, core2duo, suspicious activity

2008-02-08 Thread Алексей Лесовский
Kernel with KALLSYMS work very slow And now, network connections work very slowly, ftp-transfer = 1.7-4.5 Mb/s, kernel recompilation very slowly too, 1 string in 2 seconds. Алексей Лесовский пишет: I make kernel with CONFIG_KALLSYMS (and some settings will enabled by defaults), and run him, but

Re: [gentoo-hardened] pax, core2duo, suspicious activity

2008-02-07 Thread Алексей Лесовский
I make kernel with CONFIG_KALLSYMS (and some settings will enabled by defaults), and run him, but I have another problem when I strating emerge (--sync or -pv or -f or simple emerge packet) I got sem_post: Invalid argument sem_post: Invalid argument ...^C Traceback (most recent call last): File

Re: [gentoo-hardened] pax, core2duo, suspicious activity

2008-02-07 Thread Алексей Лесовский
1. ok today i make kernel with your recomends, and run him for 2 days 2. I have this problem in two-cores processor (In one-core all works always normally). I think processor type settings maybe as a problem, but I'm not sure:-) [EMAIL PROTECTED] пишет: On 7 Feb 2008 at 9:25, wrote: it'

Re: [gentoo-hardened] pax, core2duo, suspicious activity

2008-02-06 Thread Алексей Лесовский
system crashes unexpectedly, and can go down at any time. strace can't do, i don't know what is this. and webrsync fail too Steve Buzonas пишет: On Feb 6, 2008 8:57 AM, brant williams <[EMAIL PROTECTED] > wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA2

Re: [gentoo-hardened] pax, core2duo, suspicious activity

2008-02-06 Thread Алексей Лесовский
Hello Brant, yes, I see in console analog message, with your screenshot of emerge.log and with this words "PaX: suspicious general protection fault" thanks for configdiffs brant williams пишет: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi paxguy =) I experienced the same issue after

Re: [gentoo-hardened] pax, core2duo, suspicious activity

2008-02-06 Thread Алексей Лесовский
[EMAIL PROTECTED] пишет: On 6 Feb 2008 at 10:24, wrote: can you post the precise message? even a screenshot would be fine (try to boot with a high resolution frame buffer mode to get as much info as you can). also i'll need the System.map file and probably vmlinux as well. now system works w

Re: [gentoo-hardened] pax, core2duo, suspicious activity

2008-02-06 Thread Алексей Лесовский
Гуров В.В. пишет: On Wed, 06 Feb 2008 10:24:20 +0500 Алексей Лесовский <[EMAIL PROTECTED]> wrote: Linux ---.ru 2.6.22-hardened-r7 #1 SMP Thu Oct 18 12:19:52 SAMST 2007 x86_64 Intel(R) Core(TM)2 CPU 6300 @ 1.86GHz GenuineIntel GNU/Linux - no problem I have... Linux 2.6.23-ha

Re: [gentoo-hardened] pax, core2duo, suspicious activity

2008-02-06 Thread Алексей Лесовский
kernel config # # Automatically generated make config: don't edit # Linux kernel version: 2.6.23-hardened-r4 # Wed Feb 6 17:10:45 2008 # CONFIG_X86_32=y CONFIG_GENERIC_TIME=y CONFIG_GENERIC_CMOS_UPDATE=y CONFIG_CLOCKSOURCE_WATCHDOG=y CONFIG_GENERIC_CLOCKEVENTS=y CONFIG_GENERIC_CLOCKEVENTS_BROADCA

[gentoo-hardened] pax, core2duo, suspicious activity

2008-02-05 Thread Алексей Лесовский
Hello all. and Sorry my English Install hardened gentoo, and make kernel with PaX and Grsecurity. System works normally, and can stop unexpectedly. SSH session droped, all daemons stopping too. On the monitor a get "Suspicious activity bla-bla PaX... bla-bla... When I recompile kernel withou

Re: [gentoo-hardened] apache2 mod_rewrite

2007-11-26 Thread Алексей Лесовский
Alex Efros пишет: Hi! On Mon, Nov 26, 2007 at 05:52:33PM +0500, Алексей Лесовский wrote: (38)Function not implemented: mod_rewrite: could not create rewrite_log_lock [emerg] (38)Function not implemented: Couldn't create accept lock I think this issue doesn't related to ha

[gentoo-hardened] apache2 mod_rewrite

2007-11-26 Thread Алексей Лесовский
sorry my english... have Hardened Gentoo, emerge apache 2.2.6 with USE=ssl threads, and when i start him a get message in /var/log/apache2/error_log --- (38)Function not implemented: mod_rewrite: could not create rewrite_log_lock Configuration Failed --- when i comment using mod_rewrite, get ne