Ma ti riferisci a questo?Originariamente inviato da babanetcom
"Nei giorni scorsi è stato pubblicato un exploit
...............
Si comincia anche col pinguino?? :di56:
[slackware-security] kernel DoS (SSA:2004-167-01)
New kernel packages are available for Slackware 8.1, 9.0, 9.1,
and -current to fix a denial of service security issue. Without
a patch to asm-i386/i387.h, a local user can crash the machine.
More details about this issue may be found in the Common
Vulnerabilities and Exposures (CVE) database:
http://cve.mitre.org/cgi-bin/cvename...=CAN-2004-0554
Here are the details from the Slackware 9.1 ChangeLog:
+--------------------------+
Tue Jun 15 02:11:41 PDT 2004
patches/packages/kernel-ide-2.4.26-i486-3.tgz: Patched local DoS
(CAN-2004-0554). Without this patch to asm-i386/i387.h a local user
can crash the kernel.
(* Security fix *)
patches/packages/kernel-source-2.4.26-noarch-2.tgz: Patched local DoS
(CAN-2004-0554). The new patch can be found here, too:
patches/source/kernel-source/CAN-2004-0554.i387.fnclex.diff.gz
(* Security fix *)
patches/kernels/*: Patched local DoS (CAN-2004-0554).
(* Security fix *)
Questo è l' avviso di sicurezza e l'aggiornamento l'ho gia fatto ieri.
Mi sembra un motivo per tranquillizzarsi, non per agitarsi.
![]()

Rispondi quotando