[mdlug] Linux root exploit

Joseph C. Bender jcbender at bendorius.com
Mon Feb 11 08:29:27 EST 2008


Michael wrote:
> Per the group's response to my
> comment the exploit gives the user access to id=0 not necessarily the root
> account, am I understanding correctly?
> 
	Yup.  It's a privilege escalation exploit.  That being said, if an 
attacker gets UID=0, it's game over anyway, they have superuser privs.



-- 
Joseph Bender
Bendorius Consulting
P: 248-434-5580
F: 248-434-5581
jcbender at bendorius com



More information about the mdlug mailing list