Hello, * Moritz Muehlenhoff <[EMAIL PROTECTED]>, [2006-07-16 18:48 +0200]: > -------------------------------------------------------------------------- > Debian Security Advisory DSA 1111-1 [EMAIL PROTECTED] > http://www.debian.org/security/ Dann Frazier > Jul 16th, 2006 http://www.debian.org/security/faq > -------------------------------------------------------------------------- > > Package : kernel-source-2.6.8 et. al. > Vulnerability : race condition > Problem-Type : local > Debian-specific: no > CVE ID : CVE-2006-3625 > > It was discovered that a race condition in the process filesystem can lead > to privilege escalation.
As an additional information, mounting /proc nosuid renders the exploit innocuous. ciao, ema
signature.asc
Description: Digital signature