Re: Mysteriously hacked?

From: David (thunderbolt01_at_netscape.net)
Date: 06/08/04


Date: Tue, 08 Jun 2004 20:58:17 GMT

François Duranleau wrote:
>
> Some info on my Linux box and the network: I am running Debian (Sarge,
> a.k.a. testing), kernel version 2.4.25, no ipchains or iptables, but I

If that is a stock 2.4.25 kernel then you may find this short
clip from a kernel security notice of interest.
Why aren't you running a firewall too?

#--- snip ---
The most serious of the fixed issues is an overflow in
ip_setsockopt(), which could allow a local attacker to gain root
access, or to crash or reboot the machine. This bug affects 2.4
kernels from 2.4.22 - 2.4.25.
#---

-- 
Confucius:  He who play in root, eventually kill tree.
Registered with The Linux Counter.  http://counter.li.org/
Slackware 9.1.0 Kernel 2.4.26 SMP i686 (GCC) 3.3.3
Uptime:7 days, 11:49, 1 user, load average: 1.02, 1.04, 1.00


Relevant Pages

  • Re: shutdown fails
    ... it by using a newer kernel (linux 2.4.20 from a Red Hat installation ... then linux 2.6.0-test9 as my running Debian ...
    (Debian-User)
  • Re: PCI-modem setup problems
    ... >> I'm trying to add a modem to a Dell Precision 410 running debian ... >> testing on top of Linux 2.2.6 ... > a previous install) but the 2.6 ... > kernel I wanted to use didn't find it there. ...
    (Debian-User)
  • Re: differences between kernel-tree and kernel-source and kernel image
    ... > will this install the kernel or try to patch an existing 2.6 kernel or ... affix-source - Driver source for the Affix Bluetooth protocol stack for Linux ... atlas-doc - Automatically Tuned Linear Algebra Software,documentation ...
    (Debian-User)
  • LTTng finds abnormally long APIC interrupt handler : 58.2 ms
    ... A trace taken with LTTng on a x86_64 dual quad-core, Linux kernel ... # Input Device Drivers ...
    (Linux-Kernel)
  • [PATCH] LogFS take three
    ... Add LogFS, a scalable flash filesystem. ... The two main problems of JFFS2 are memory consumption and mount time. ... * As should be obvious for Linux kernel code, ...
    (Linux-Kernel)

Quantcast