[<prev] [next>] [day] [month] [year] [list]
Message-ID: <20021113115846.A20260@neurosis.mit.edu>
From: jim at jtan.com (Jim Paris)
Subject: Re: i386 Linux kernel DoS
> char dos[] = "\x9C" /* pushfd */
> "\x58" /* pop eax */
> "\x0D\x00\x01\x00\x00" /* or eax,100h */
> "\x50" /* push eax */
> "\x9D" /* popfd */
> "\x9A\x00\x00\x00\x00\x07\x00"; /* call 07h:00h */
Has anyone come up with a hotfix for this (eg, a kernel module to
temporarily patch the hole)? Where was this bug fixed in 2.4.19? The
CHECK_IF_IN_TRAP stuff in handle_vm86_fault?
-jim
Powered by blists - more mailing lists