[39558] in bugtraq

home help back first fref pref prev next nref lref last post

[ Suresec Advisories ] - Linux kernel ia32 compatibility (ia64/x86-64)

daemon@ATHENA.MIT.EDU (Suresec Advisories)
Mon Jul 11 13:02:03 2005

Message-ID: <42D2110D.8080008@suresec.org>
Date: Mon, 11 Jul 2005 08:26:21 +0200
From: Suresec Advisories <advisories@suresec.org>
MIME-Version: 1.0
To: bugtraq@securityfocus.com, full-disclosure@lists.grok.org.uk
Content-Type: text/plain; charset=us-ascii; format=flowed
Content-Transfer-Encoding: 7bit

Suresec Security Advisory  - #00004
10/07/05

Linux kernel ia32 compatibility race condition 
Advisory: http://www.suresec.org/advisories/adv4.pdf <http://www.suresec.org/advisories/adv3.pdf>

Description:

A race condition vulnerability has been found in the ia32 compatibility 
execve() systemcall. The race condition may lead to heap corruption.

Risk:

Exploitation of this vulnerability may results in panics, oopses or 
in the worst case code exection at ring 0.

Credit:

The vulnerability was discovered by Ilja van Sprundel.


home help back first fref pref prev next nref lref last post