[11773] in bugtraq

home help back first fref pref prev next nref lref last post

Re: NetBSD 1.4.1 local DoS

daemon@ATHENA.MIT.EDU (Alan Brown)
Thu Sep 9 04:50:13 1999

Mime-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-Id:  <Pine.LNX.4.05.9909042214280.12223-100000@mailhost.manawatu.net.nz>
Date:         Sat, 4 Sep 1999 22:15:32 +1200
Reply-To: Alan Brown <alan@MANAWATU.GEN.NZ>
From: Alan Brown <alan@MANAWATU.GEN.NZ>
X-To:         "Charles M. Hannum" <root@IHACK.NET>
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <199909011759.NAA18371@bikini.ihack.net>

On Wed, 1 Sep 1999, Charles M. Hannum wrote:

> Linux is not generally vulnerable to the exploit as posted, because it
> seems to only accept 64512 bytes from the write(2)s, and limit the
> file descriptor table to 256 entries (at least by default)

This is changeable at a kernel level by editing limit.h and the latest
kernel (2.2.12) seems to allow dynamic allocations of per-user FDs.

AB

home help back first fref pref prev next nref lref last post