[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-security] NEW local exploit



What about people giving shell access to all users? Some of them might also be on this list. I don't think its smart to post a source code, if nobody has the ability to fix it.


At 16:11 15-4-2001 +0100, you wrote:
On Sun, 15 Apr 2001, Joe Llewelyn wrote:

> Surely posting the source on here would put most people on this list at
> risk - hence the reason why he did not do it in the first place.

The source has been openly doing the rounds of the likes of hack.co.za for
about 2 weeks now, so posting it to the list isn't a huge problem.

In actual fact, posting source to things like this generally helps people
test their systems to see if they are vun to the problem.  In the case of
this problem, everybody is, as it is a bug in the Linux kernel.