Full Disclosure mailing list archives

one shot remote root for linux?


From: Gadi Evron <ge () linuxbox org>
Date: Tue, 28 Apr 2009 17:07:29 +0300

Sometimes news finds us in mysterious yet obvious ways.

HD set a status which I noticed on my twitter:

@hdmoore reading through sctp_houdini.c - one-shot remote linux kernel
root - http://kernelbof.blogspot.com/

I asked him about it on IM, wondering if it is real:
"looks like that
but requires a sctp app to be running"

Naturally, I retweeted.

Signed,

        @gadievron

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: