Grsec Pax Vulnerability

A forum for discussing and working on implementations for new features of grsecurity

Moderators: spender, PaX Team

Grsec Pax Vulnerability

Postby TSJason » Mon Jan 29, 2007 4:11 pm

Regards,
Jason
TSJason
 
Posts: 13
Joined: Fri Jul 01, 2005 6:24 am
Location: Lafayette, IN

Postby aldee » Mon Jan 29, 2007 4:17 pm

This has already been covered.
aldee
 
Posts: 25
Joined: Tue Aug 15, 2006 11:41 am

Postby TSJason » Mon Jan 29, 2007 4:56 pm

Aldee,

I disagree. I noted the "Pre-Advisory" which was mentioned innappropriately in your "2.4.34" posting and this is not what I'm concerned about. This is now shown as an official bug with a working example of how to create a local overflow to gain root priviledges (maybe read the entire page that I linked).

I'm also concerned that Spender or the Paxguy haven't issued an official notice that this is either
a) completely incorrect
or
b) this is fixed in the current patch

Thanks for your posting anyway.
Regards,
Jason
TSJason
 
Posts: 13
Joined: Fri Jul 01, 2005 6:24 am
Location: Lafayette, IN


Postby TSJason » Mon Jan 29, 2007 5:10 pm

Hi,

Thank you. Your assistance is greatly appreciated.
Regards,
Jason
TSJason
 
Posts: 13
Joined: Fri Jul 01, 2005 6:24 am
Location: Lafayette, IN


Return to grsecurity development

cron