- Code: Select all
# uname -r
3.17.7-hardened-r1
# gradm -a admin
[...]
# /etc/init.d/syslog-ng restart
* Stopping syslog-ng ...
results in a kernel crash:
- Code: Select all
PAX: suspicious general protection fault: 0000 [#1]
Modules linked in:
CPU: 0 PID: 1108 Comm: mkdir Not tainted 3.17.7-hardened-r1 #1
Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.7.5-0-ge51488c-20140602_164612-nilsson.home.kraxel.org 04/01/2014
task: cfa588f0 ti: cfa58c10 task.ti: cfa58c10
EIP: 0060:[<001bad8d>] EFLAGS: 00010282 CPU: 0
EAX: cfabdb20 EBX: cfa9da00 ECX: 00000067 EDX: 00000000
ESI: 00000000 EDI: 00000002 EBP: 5b5909f3 ESP: cfa9fef0
DS: 0068 ES: 0068 FS: 0000 GS: 007b SS: 0068
CR0: 80050033 CR2: b27720a0 CR3: 0fabf000 CR4: 00040790
Stack:
00000002 cf577a00 000ea58d 00000002 000001ed ffffffff cf455580 cfaa4f74
5b5909f3 00000060 000001ed cfa58c10 000ea5c0 ffffff9c 5b5909f3 000001ed
0037ffa3 5b5909f3 000001ed 16056e9c 5b5909dd 000001ed 5b5906c8 00000027
Call Trace:
[<000ea58d>] ? SyS_mkdirat+0xfd/0x110
[<000ea5c0>] ? SyS_mkdir+0x20/0x30
[<0037ffa3>] ? syscall_call+0x7/0x7
[<000ea4bf>] ? SyS_mkdirat+0x2f/0x110
[<000ea5c0>] ? SyS_mkdir+0x20/0x30
[<0000c089>] ? pax_randomize_kstack+0x39/0x40
[<0037ffc4>] ? restore_all_pax+0x7/0x7
Code: e0 b0 8d c1 01 74 1d 53 89 c3 83 ec 04 e8 ac e5 ff ff 89 c2 b8 60 24 0a c2 e8 00 ea ff ff 85 c0 75 03 58 5b c3 8b 53 70 8b 5b 3c <8b> 8a 08 01 00 00 8d 50 08 83 c0 04 8b 5b 64 89 1c 24 e8 b3 1f
EIP: [<001bad8d>] gr_handle_create+0x2d/0x50 SS:ESP 0068:cfa9fef0
---[ end trace 1567ccd0979618c6 ]---
Kernel panic - not syncing: grsec: halting the system due to suspicious kernel crash caused by root
Kernel Offset: 0x3f000000 from 0xc1000000 (relocation range: 0xc0000000-0xd07dffff)
---[ end Kernel panic - not syncing: grsec: halting the system due to suspicious kernel crash caused by root