oss-sec mailing list archives

Re: [Security] CVE request: kernel: taskstats/procfs io infoleak (was: taskstats authorized_keys presence infoleak PoC)


From: Vasiliy Kulikov <segoon () openwall com>
Date: Wed, 29 Jun 2011 17:10:30 +0400

On Wed, Jun 29, 2011 at 15:11 +0400, Vasiliy Kulikov wrote:
2) as you say here:

READ = CONST + SENSITIVE + CONTROLLABLE

If CONST is known and CONTROLLABLE is controlled by an attacker then he
may find C1 and C1+1 generating X kb - 1 and (X+1) kb traffic,

(X+1) kb - 1 and (X+1) kb of course, they are rounded to X and X+1 kbs,
respectively.

respectively, revealing len(SENSITIVE).

-- 
Vasiliy Kulikov
http://www.openwall.com - bringing security into open computing environments


Current thread: