8113780 2002-03-08 10:46 -0600 /18 rader/ Avery Buffington <avery.buffington@fxfn.com> Sänt av: joel@lysator.liu.se Importerad: 2002-03-08 23:12 av Brevbäraren Extern mottagare: bugtraq@securityfocus.com Mottagare: Bugtraq (import) <21330> Ärende: linux <=2.4.18 x86 traps.c problem ------------------------------------------------------------ From: Avery Buffington <avery.buffington@fxfn.com> To: bugtraq@securityfocus.com Message-ID: <5519ADC88B72AA469DBF02CA51211CE8DC772C@fxapps3.mesas.com> I've read a litte about a x86 specific bug discoverd by Stephan Springl related to the iBCS code in arch/i386/kernel/traps.c which allows a user to exploit the iBCS interface and kill processes not belonging to them. The openwall site has a tiny blurb about it and I've seen it mentioned on the gresecurity mailing list, but I can't seem to find any other information about it. Does anyone else know more about the details of this? thanks, -avery (8113780) /Avery Buffington <avery.buffington@fxfn.com>/(Ombruten) Bilaga (application/x-pkcs7-signature) i text 8113781 8113781 2002-03-08 10:46 -0600 /9 rader/ Avery Buffington <avery.buffington@fxfn.com> Bilagans filnamn: "smime.p7s" Importerad: 2002-03-08 23:12 av Brevbäraren Extern mottagare: bugtraq@securityfocus.com Mottagare: Bugtraq (import) <21331> Bilaga (text/plain) till text 8113780 Ärende: Bilaga (smime.p7s) till: linux <=2.4.18 x86 traps.c problem ------------------------------------------------------------ 0 *H÷ 010 + 0 *H÷ Ä00í uk0 *H÷ 010 UZA10UWestern Cape10U Cape Town10 U Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.300 020107210636Z 030107210636Z0G10UThawte Freemail Member1$0" *H÷ avery@fundsxpress.com00 *H÷ 0 ¿ ì%MI îØ9Ùþù©°rV©\Õ¯ÒYÅþµí"(ßk說~MÔiÓ<bHôq¹ÑTr~îÀÄlËÂíÐíìƼåÕ´É0ð_ñ¸àçwMºÂ"VV:ßå¼yHîÆTÍãQm º0N Ðww¢Q¹n*Ek £2000 U0avery@fundsxpress.com0Uÿ0 0 *H÷ L Ê+ÀI»®¥#sç³L¬¸ }x(¨'¾¤g¼Ì¤v&X²þ J¯ÙóM´¡¬q{{MX1û+Åa]:¢!îJY\ÓOáþWy´¾ø«z³WëÊ ª³Ïq*Öt$9Ï<ïi÷»aføê080¡ fEr·ÌtõÏcvEÐ.0 *H÷ 0Ñ10 UZA10UWestern Cape10U Cape Town10U Thawte Consulting1(0&UCertification Services Division1$0"UThawte Personal Freemail CA1+0) *H÷ personal-freemail@thawte.com0 000830000000Z 040827235959Z010 UZA10UWestern Cape10U Cape Town10 U Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.3000 *H÷ 0 Þ32¦cÇ %E>Ònx'gÅÚãD)c5*mp<úÜ®÷îto0¼3ù4q £mñÃO¢eÛ úKñÖÝa¥ù ÍU5u¨'®Ørùºö×°Þé«à¨|CBPQ<ð9´Tÿ³If - ìké¡i £N0L0)U"0 ¤010UPrivateLabel1-2970Uÿ0ÿ 0U0 *H÷ 1±KG]ùqåõSl]yÖ=À&b"§ø"èI·'{9ºüæò$ëú½ì *8÷PU¨l÷ L¼ôµë¢Gl¢X1B l°iÑ+²@]jùyÐê.%ÝäüÛ óZÛÊ<öDê&iHÎ¥çØÉbbÆ100010 UZA10UWestern Cape10U Cape Town10 U Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.30uk0 + V0 *H÷ 1 *H÷ 0 *H÷ 1 020308164926Z0# *H÷ 1H'~jÈó¦âÖ J¦j$³0I *H÷ 1<0:0 *H÷ 0*H÷ 0+0+0 *H÷ 0« +710010 UZA10UWestern Cape10U Cape Town10 U Thawte10UCertificate Services1(0&UPersonal Freemail RSA 2000.8.30uk0 *H÷ ¥VbúßÛçµ]©f u7?òà@ºmµµ1uÃÇðKÆÖøiøS:ðè&÷õf"ða`9ý¤vLmøJn¦¾èáØ´Ç>Ø. ×®ÊÖë ÐïáÂ¥×ö£«AJ¿K2²Ôüv~ÖüÃ$ÆÓ (8113781) /Avery Buffington <avery.buffington@fxfn.com>/