• [^] # Re: Au sujet de disable-vmsplice-if-exploitable.c

    Posté par . En réponse au journal Ça faisait longtemps: Local Root Exploit dans linux !. Évalué à 1.

    Il y a un autre workaround qui consiste en un module kernel qui redirige vmsplice vers nosuchsyscall.
    Enfin c'est comme ça que je comprend ce oops:

    ------------[ cut here ]------------
    kernel BUG at /home/nico/novmsplice/novmsplice.c:59!
    invalid opcode: 0000 [#1]
    Modules linked in: novmsplice iptable_filter ip_tables it87 hwmon_vid hwmon i2c_isa xt_physdev x_tables i2c_i801 i2c_core
    CPU: 0
    EIP: 0061:[] Not tainted VLI
    EFLAGS: 00010287 (2.6.20-xen-r6 #1)
    EIP is at nosuchsyscall+0x0/0x4 [novmsplice]
    eax: 0000013c ebx: 00000004 ecx: bfde2a2c edx: 000000d8
    esi: 00000000 edi: b7f8d000 ebp: c6c30000 esp: c6c31fb4
    ds: 007b es: 007b ss: 0069
    Process jessica_biel_na (pid: 6408, ti=c6c30000 task=c6de4550 task.ti=c6c30000)
    Stack: c0104784 00000004 bfde2a2c 00000001 00000000 b7f8d000 bfde29d8 0000013c
    0000007b 0000007b c0410000 0000013c 0804825c 00000073 00000286 bfde29c0
    0000007b 08074e90 00000000
    Call Trace:
    [] syscall_call+0x7/0xb
    [] io_schedule_timeout+0x15/0x16
    =======================

    En tout cas, c'est vraiment pas discret maintenant :)
    ==> http://www.linux.it/~md/software/novmsplice.tgz