<?xml version="1.0" encoding="UTF-8"?>

<rdf:RDF 
  xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
  xmlns="http://purl.org/rss/1.0/"
  xmlns:dc="http://purl.org/dc/elements/1.1/"
  xmlns:syn="http://purl.org/rss/1.0/modules/syndication/"
>

  <channel rdf:about="http://lwn.net/headlines/136516/">
    <title>LWN: Comments on "Responding to the kernel ELF vulnerability"</title>
    <link>http://lwn.net/Articles/136516/</link>
    <description>
This is a special feed containing comments posted
to the individual LWN article titled &quot;Responding to the kernel ELF vulnerability&quot;.

    </description>

    <syn:updatePeriod>hourly</syn:updatePeriod>
    <syn:updateFrequency>2</syn:updateFrequency>
    <items>
      <rdf:Seq>
	<rdf:li resource="http://lwn.net/Articles/137158/rss" />
	<rdf:li resource="http://lwn.net/Articles/136892/rss" />
	<rdf:li resource="http://lwn.net/Articles/136645/rss" />
	<rdf:li resource="http://lwn.net/Articles/136627/rss" />
	<rdf:li resource="http://lwn.net/Articles/136622/rss" />
	<rdf:li resource="http://lwn.net/Articles/136620/rss" />
	<rdf:li resource="http://lwn.net/Articles/136614/rss" />
	<rdf:li resource="http://lwn.net/Articles/136610/rss" />
	<rdf:li resource="http://lwn.net/Articles/136603/rss" />
      
      </rdf:Seq>
    </items>

  </channel>
    <item rdf:about="http://lwn.net/Articles/137158/rss">
      <title>Responding to the kernel ELF vulnerability</title>
      <link>http://lwn.net/Articles/137158/rss</link>
      <dc:date>2005-05-23T20:30:45+00:00</dc:date>
      <dc:creator>gswoods</dc:creator>
      <description>
      Today the Fedora project released a kernel update that claims to fix CAN-2005-1263, the ELF vulnerability.&lt;br&gt;
      
      </description>
    </item>
    <item rdf:about="http://lwn.net/Articles/136892/rss">
      <title>Responding to the kernel ELF vulnerability</title>
      <link>http://lwn.net/Articles/136892/rss</link>
      <dc:date>2005-05-20T22:58:54+00:00</dc:date>
      <dc:creator>giraffedata</dc:creator>
      <description>
      &lt;blockquote&gt;
That will cause the strnlen_user() function to page fault at the first attempt to count argument lengths. 
&lt;/blockquote&gt;
&lt;p&gt;
So?  How does that get you to 
&lt;blockquote&gt;
could allow a local user to use a manipulated binary to gain elevated privileges. 
&lt;/blockquote&gt;
?
      
      </description>
    </item>
    <item rdf:about="http://lwn.net/Articles/136645/rss">
      <title>Responding to the kernel ELF vulnerability</title>
      <link>http://lwn.net/Articles/136645/rss</link>
      <dc:date>2005-05-19T10:29:04+00:00</dc:date>
      <dc:creator>NightMonkey</dc:creator>
      <description>
      And for Gentoo's 2.6 series: &lt;a href=&quot;http://dev.gentoo.org/~dsd/gentoo-dev-sources/releases.htm&quot;&gt;http://dev.gentoo.org/~dsd/gentoo-dev-sources/releases.htm&lt;/a&gt;&lt;br&gt;
(See 2.6.11 patchset, release 12)&lt;br&gt;
&lt;p&gt;
Of course, 2.6 isn't vulnerable, as seen from gregkh's comment... ;)&lt;br&gt;
&lt;p&gt;
Can't seem to find a GLSA to go with this release, but perhaps I need to look harder?&lt;br&gt;
      
      </description>
    </item>
    <item rdf:about="http://lwn.net/Articles/136627/rss">
      <title>2.6 isn't vulnerable</title>
      <link>http://lwn.net/Articles/136627/rss</link>
      <dc:date>2005-05-19T07:22:20+00:00</dc:date>
      <dc:creator>jhs</dc:creator>
      <description>
      I actually specifically clicked on the comments just to post a similar message about the LWN content.  So I guess I will put it here.  The LWN kernel section is excellent.&lt;br&gt;
      
      </description>
    </item>
    <item rdf:about="http://lwn.net/Articles/136622/rss">
      <title>2.6 isn't vulnerable</title>
      <link>http://lwn.net/Articles/136622/rss</link>
      <dc:date>2005-05-19T06:59:47+00:00</dc:date>
      <dc:creator>komarek</dc:creator>
      <description>
      Comments and content like this from gregkh, are why I pay for and read LWN.  How many slashdot posts would I have to read to get the same information, with the same confidence?  Thanks corbet and gregkh for keep us all in-the-know.&lt;br&gt;
      
      </description>
    </item>
    <item rdf:about="http://lwn.net/Articles/136620/rss">
      <title>test kernel for RHEL 4, too</title>
      <link>http://lwn.net/Articles/136620/rss</link>
      <dc:date>2005-05-19T06:41:47+00:00</dc:date>
      <dc:creator>barryn</dc:creator>
      <description>
      2.6.9-10, available at:&lt;br&gt;
&lt;a href=&quot;http://people.redhat.com/davej/kernels/RHEL4/&quot;&gt;http://people.redhat.com/davej/kernels/RHEL4/&lt;/a&gt;&lt;br&gt;
      
      </description>
    </item>
    <item rdf:about="http://lwn.net/Articles/136614/rss">
      <title>2.6 isn't vulnerable</title>
      <link>http://lwn.net/Articles/136614/rss</link>
      <dc:date>2005-05-19T06:13:58+00:00</dc:date>
      <dc:creator>gregkh</dc:creator>
      <description>
      The main reason there have not been any updates, is that there really isn't&lt;br&gt;
a problem for the 2.6 kernel.  The original author has admited this finally,&lt;br&gt;
no one was ever able to reproduce it on a 2.6 kernel.  The only reason I&lt;br&gt;
released a kernel update, was at the time, we thought there was an &lt;br&gt;
off-chance that there was a problem.  However in further testing, it has not&lt;br&gt;
been the case.&lt;br&gt;
&lt;p&gt;
But the patch was a good one to have, to prevent any other types of this&lt;br&gt;
kind of error in that same area, if some other attack vector like the&lt;br&gt;
reported one were developed.&lt;br&gt;
      
      </description>
    </item>
    <item rdf:about="http://lwn.net/Articles/136610/rss">
      <title>Responding to the kernel ELF vulnerability</title>
      <link>http://lwn.net/Articles/136610/rss</link>
      <dc:date>2005-05-19T04:18:08+00:00</dc:date>
      <dc:creator>gte223j</dc:creator>
      <description>
      You could always mount /home as noexec and the same goes for /tmp ....... system binaries only:-0&lt;br&gt;
      
      </description>
    </item>
    <item rdf:about="http://lwn.net/Articles/136603/rss">
      <title>Responding to the kernel ELF vulnerability</title>
      <link>http://lwn.net/Articles/136603/rss</link>
      <dc:date>2005-05-19T02:35:41+00:00</dc:date>
      <dc:creator>mattdm</dc:creator>
      <description>
      There is an update for FC3 in the &quot;testing&quot; area which covers this.&lt;br&gt;
      
      </description>
    </item>
</rdf:RDF>

