Re: bf2.4 and the ptrace exploit

2003-09-09 Thread Andreas Janssen
Hello Markus Dejmek (<[EMAIL PROTECTED]>) wrote: > The exploit still works with the latest 2.4.18-5woody4. > I just tried it. > > testserver:~# apt-cache policy kernel-image-2.4.18-bf2.4 > kernel-image-2.4.18-bf2.4: > Installed: 2.4.18-5woody4 > Candidate: 2.4.18-5woody4 > Version Table: >

Re: bf2.4 and the ptrace exploit

2003-09-09 Thread Travis Crump
Markus Dejmek wrote: Hi, The exploit still works with the latest 2.4.18-5woody4. I just tried it. silly question, did you remember to remove the suid permission bit from the exploit binary between tests? pgp0.pgp Description: PGP signature

Re: bf2.4 and the ptrace exploit

2003-09-09 Thread Markus Dejmek
Hi, I just read that the exploit is fixed in kernel-image-2.5.18-7. But it is not in the stable tree ? mfg Markus On Tuesday 09 September 2003 01:26 pm, Andreas Janssen wrote: > Hello > > Jean-Michel besnard (<[EMAIL PROTECTED]>) wrote: > > I wonder if there is a non-ptrace-affected 2.4.18-bf2.

Re: bf2.4 and the ptrace exploit

2003-09-09 Thread Markus Dejmek
Hi, The exploit still works with the latest 2.4.18-5woody4. I just tried it. testserver:~# apt-cache policy kernel-image-2.4.18-bf2.4 kernel-image-2.4.18-bf2.4: Installed: 2.4.18-5woody4 Candidate: 2.4.18-5woody4 Version Table: *** 2.4.18-5woody4 0 500 http://security.debian.org

Re: bf2.4 and the ptrace exploit

2003-09-09 Thread Andreas Janssen
Hello Jean-Michel besnard (<[EMAIL PROTECTED]>) wrote: > I wonder if there is a non-ptrace-affected 2.4.18-bf2.4 kernel image > to be downloaded somewhere. > > I have to apt-get install'ed kernel-image-2.4.18-bf2.4 but when using > this kernel users still can get root access with the ptrace expl

bf2.4 and the ptrace exploit

2003-09-09 Thread Jean-Michel besnard <[EMAIL PROTECTED]>
Hi, I wonder if there is a non-ptrace-affected 2.4.18-bf2.4 kernel image to be downloaded somewhere. I have to apt-get install'ed kernel-image-2.4.18-bf2.4 but when using this kernel users still can get root access with the ptrace exploit. What I have in my /etc/apt/sources.list: deb ftp://ft