[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-security] RAZOR advisory: Linux 2.2.xx /proc/<pid>/mem mmap() vulnerability



Chuck wrote:
>> Sun cobalt has not approved the install of 2.4 on the RAQ 3 or 4,
>> and they will not for A LONG TIME :(<
> Pardon my ignorance, but why is this (ESPECIALLY if it addresses some
> serious concerns) ?

My understanding is that to upgrade to 2.4.x requires reflashing the BIOS of
the Raq, which can certainly be done, but has the risk of rendering the Raq
unbootable if it goes wrong.

So Sun won't "approve" 2.4.x because then they'd be approving you breaking
your Raq and you might expect them to fix it. So they probably never will
"approve" it, but they certainly won't stop you. It'll break the warranty
but so do most necessary upgrades.

Cheers
Stephen