<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Old news &#8211; Linux local root vulnerability</title>
	<atom:link href="http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/</link>
	<description>A blog for IT Admins who do everything by an IT Admin who does everything</description>
	<lastBuildDate>Tue, 07 Sep 2010 20:41:25 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Matt Simmons</title>
		<link>http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/comment-page-1/#comment-3207</link>
		<dc:creator>Matt Simmons</dc:creator>
		<pubDate>Wed, 19 Aug 2009 15:07:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/#comment-3207</guid>
		<description>@Mike

Good link, thanks!</description>
		<content:encoded><![CDATA[<p>@Mike</p>
<p>Good link, thanks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mike</title>
		<link>http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/comment-page-1/#comment-3206</link>
		<dc:creator>mike</dc:creator>
		<pubDate>Wed, 19 Aug 2009 15:00:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/#comment-3206</guid>
		<description>mmap_min_addr can be simple to bypass in many circumstances. Brad Spengler&#039;s full disclosure of this is here: http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/69537</description>
		<content:encoded><![CDATA[<p>mmap_min_addr can be simple to bypass in many circumstances. Brad Spengler&#8217;s full disclosure of this is here: <a href="http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/69537" rel="nofollow">http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/69537</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: anonymouscoward</title>
		<link>http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/comment-page-1/#comment-3204</link>
		<dc:creator>anonymouscoward</dc:creator>
		<pubDate>Tue, 18 Aug 2009 17:31:49 +0000</pubDate>
		<guid isPermaLink="false">http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/#comment-3204</guid>
		<description>Nope, not activated at all in kernel.</description>
		<content:encoded><![CDATA[<p>Nope, not activated at all in kernel.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Matt Simmons</title>
		<link>http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/comment-page-1/#comment-3203</link>
		<dc:creator>Matt Simmons</dc:creator>
		<pubDate>Tue, 18 Aug 2009 15:29:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/#comment-3203</guid>
		<description>Weird. I don&#039;t know, then. From everything I&#039;ve read, you should be able to create it by echoing a number to the file. 

Do you have SELinux enabled? I&#039;ve also read that it prevents the altering of that setting, which may have the side-effect of removing the file from proc. 

~$ /usr/sbin/sestatus 
SELinux status:                 disabled

on mine, anyway.</description>
		<content:encoded><![CDATA[<p>Weird. I don&#8217;t know, then. From everything I&#8217;ve read, you should be able to create it by echoing a number to the file. </p>
<p>Do you have SELinux enabled? I&#8217;ve also read that it prevents the altering of that setting, which may have the side-effect of removing the file from proc. </p>
<p>~$ /usr/sbin/sestatus<br />
SELinux status:                 disabled</p>
<p>on mine, anyway.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: anonymouscoward</title>
		<link>http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/comment-page-1/#comment-3202</link>
		<dc:creator>anonymouscoward</dc:creator>
		<pubDate>Tue, 18 Aug 2009 15:21:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/#comment-3202</guid>
		<description>Actually it does :)
# cat /proc/sys/vm/swappiness
60

2.6.28 x86_64</description>
		<content:encoded><![CDATA[<p>Actually it does <img src='http://www.standalone-sysadmin.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
# cat /proc/sys/vm/swappiness<br />
60</p>
<p>2.6.28 x86_64</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Matt Simmons</title>
		<link>http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/comment-page-1/#comment-3201</link>
		<dc:creator>Matt Simmons</dc:creator>
		<pubDate>Tue, 18 Aug 2009 14:31:59 +0000</pubDate>
		<guid isPermaLink="false">http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/#comment-3201</guid>
		<description>Hrm....then your kernel doesn&#039;t support procfs? ;-) 

You should upgrade when the patch comes out!</description>
		<content:encoded><![CDATA[<p>Hrm&#8230;.then your kernel doesn&#8217;t support procfs? <img src='http://www.standalone-sysadmin.com/blog/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' />  </p>
<p>You should upgrade when the patch comes out!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: anonymouscoward</title>
		<link>http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/comment-page-1/#comment-3200</link>
		<dc:creator>anonymouscoward</dc:creator>
		<pubDate>Tue, 18 Aug 2009 14:21:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.standalone-sysadmin.com/blog/2009/08/old-news-linux-local-root-vulnerability/#comment-3200</guid>
		<description>..and if it says
cat: /proc/sys/vm/mmap_min_addr: No such file or directory
?:)</description>
		<content:encoded><![CDATA[<p>..and if it says<br />
cat: /proc/sys/vm/mmap_min_addr: No such file or directory<br />
?:)</p>
]]></content:encoded>
	</item>
</channel>
</rss>
