LWN.net Logo

The brk() vulnerability

The brk() vulnerability

Posted Dec 3, 2003 6:34 UTC (Wed) by dkite (guest, #4577)
Parent article: The brk() vulnerability

This hit the news here in Canada. Didn't see it, but a coworker said they
heard something during the lunch news.

This is a local exploit. From what I understand, it isn't exploitable
unless you can install and run an application that does the dirty work.

Which raises the question of how the servers were compromised. Obviously
this bug was not the only problem.

Derek


(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.