Linked by Jordan Spencer Cunningham on Fri 14th Aug 2009 02:29 UTC
Thread beginning with comment 378506
To view parent comment, click here.
To read all comments associated with this story, please click here.
To view parent comment, click here.
To read all comments associated with this story, please click here.
RE[3]: Recent Kernels have protections (RHEL 5.2+).
by Bill Shooter of Bul on Fri 14th Aug 2009 21:50
in reply to "RE[2]: Recent Kernels have protections (RHEL 5.2+)."






Member since:
2008-02-26
No, he isn't.
SELinux does disable that for its own secret reasons.
Anyways what strikes me is that nobody noticed before. Trying to allocate the 0th page sounds like something that would happen often(in buggy code) and that would sound many alarms if successful. Especially as we know it would fail on some systems.
All the exploit is a bit unbelievable but that particular point is amazing.