[plug] do_brk() vuln with kernels < 2.4.23

Cameron Patrick cameron at patrick.wattle.id.au
Thu Dec 18 14:05:11 WST 2003


On Thu, Dec 18, 2003 at 01:41:28PM +0800, Chris Caston wrote:
| Hello,
| 
| I'm building a new firewall at the moment and currently my kernel is:
| 
| 2.4.18-5woody5
| 
| Is this likely susceptible to do_brk() ?

Look in the Debian changelog, somewhere like
/usr/share/doc/kernel-source-*/changelog.Debian.gz.  If it says the
do_brk vulnerability has been patched (and is dated after 20 Nov :-P)
then you should be safe.

Cameron.




More information about the plug mailing list