[SECURITY-L] Exec header kernel panic - OpenBSD

Security Team - UNICAMP security em unicamp.br
Qui Nov 6 10:33:37 -02 2003


Subject:
[S] [tedu em zeitbombe.org: Exec header kernel panic]
From:
Rafael R Obelheiro <rro em das.ufsc.br>
Date:
Thu, 6 Nov 2003 08:07:56 -0200

To:
seguranca em pangeia.com.br


----- Forwarded message from Ted Unangst <tedu em zeitbombe.org> -----

Date: Wed, 5 Nov 2003 18:54:13 -0500 (EST)
From: Ted Unangst <tedu em zeitbombe.org>
Subject: Exec header kernel panic
To: security-announce em openbsd.org

A local user can cause a kernel panic using a specially crafted binary.  
The kernel will attempt to allocate too much memory and panic.

The problem was reported by Georgi Guninski, see also
http://www.guninski.com/msuxobsd1.html

A fix has been committed to 3.3 and 3.4 -stable branches.  Patches are 
also available at
ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.4/common/005_exec.patch
and
ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.3/common/010_exec.patch


-- ask not what you can do for your country ask what your country did to 
you ----- End forwarded message -----





Mais detalhes sobre a lista de discussão SECURITY-L