Page 1 of 1

Kernel root hole CVE-2010-3081 for stable release

PostPosted: Tue Sep 21, 2010 3:04 am
by cmouse
For stable release, you can use this patch : http://git.kernel.org/?p=linux/kernel/g ... h=c41d68a5. It should go in OK, but I noticed that arch/tile/include/asm/compat.h will not go cleanly, as won't include/linux/compat.h. The first one you can just download from the site, and for the second one, just go ahead and add the line yourself. This will close the hole for your 2.6.32.21 kernel. http://cmouse.desteem.org/linux-2.6.32.21-cve20103081.patch for those who want a patch. This should go cleanly.

Re: Kernel root hole CVE-2010-3081 for stable release

PostPosted: Tue Sep 21, 2010 7:49 am
by spender
Did you notice all the patches have already been included in grsec since the day the vulnerability was announced? ;)

-Brad

Re: Kernel root hole CVE-2010-3081 for stable release

PostPosted: Tue Sep 21, 2010 10:50 am
by cmouse
Weren't on my patch, you could've announced this on the news section :)