The brk() vulnerability
Posted Dec 3, 2003 6:34 UTC (Wed) by
dkite (guest, #4577)
Parent article:
The brk() vulnerability
This hit the news here in Canada. Didn't see it, but a coworker said they
heard something during the lunch news.
This is a local exploit. From what I understand, it isn't exploitable
unless you can install and run an application that does the dirty work.
Which raises the question of how the servers were compromised. Obviously
this bug was not the only problem.
Derek
(
Log in to post comments)