Date: Sat, 05 Jul 2014 22:25:50 +0200 From: Yves-Alexis Perez <corsac@...ian.org> To: oss-security@...ts.openwall.com Subject: Re: CVE-2014-4699: Linux ptrace bug On dim., 2014-07-06 at 00:20 +0400, Solar Designer wrote: > On Sat, Jul 05, 2014 at 09:58:15PM +0200, Yves-Alexis Perez wrote: > > And the system is usable after that. > > Yet both are vulnerable, with privilege escalation likely possible. Yes, sorry if my initial answer was suggesting the kernels were not vulnerable. It was just that we didn't managed to make them crash on the few boxes we tried on. Regards, -- Yves-Alexis Download attachment "signature.asc" of type "application/pgp-signature" (474 bytes)
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.