Kernel security flaw??

geoffrey froner geoffrey.froner at gmail.com
Sun Feb 24 21:47:32 UTC 2008


I saw the following report at the Gentoo site.  Not being an expert with
Linux, I am at a loss to understand the impact.  Is this something Ubuntu
users need be concerned?  Is there already a patch for this problem?

"Two *major security flaws in the Linux kernel* were reported last weekend.
Both flaws have the same impact (*root access for local users*) and both
exist within the vmsplice() system call, which was added to the kernel in
2.6.17. There is no configuration option to exclude vmsplice() so *everyone
is vulnerable."

TIA

Geoffrey
*
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/ubuntu-users/attachments/20080224/11945fdc/attachment.html>


More information about the ubuntu-users mailing list