The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Serious Linux Security Flaw Found
Time: 14:28 EST/19:28 GMT | News Source: IDG | Posted By: Robert Stein

The bug affects versions of the Linux kernel prior to 2.4.23, and was the method used during a recent attack on Debian's servers, according to the advisory. In that attack four Linux servers that hosted Debian's bug tracking system, mailing lists, and various Web pages were compromised.

Write Comment
Return to News

  Displaying 1 through 25 of 154
Last | Next
  The time now is 8:10:23 AM ET.
Any comment problems? E-mail us
#1 By 16451 (63.227.226.13) at 12/2/2003 5:05:03 PM
#1 >>> I love the contradictory claim

The claim is not contradictory at all. The first statement applies to the availability of the source code patch for a single specific distro. The second statement applies to the binary distribution of patches for several distros.

This post was edited by RH7.3 on Tuesday, December 02, 2003 at 17:05.

#2 By 10022 (24.169.19.69) at 12/2/2003 7:03:13 PM
as Nelson Muntz would say: HA HA

so if you dont apply linux patches then you're vulnerable... very interesting...

#3 By 16451 (65.19.17.100) at 12/2/2003 11:12:01 PM
#11 >>> So ... why the slow service in fixing all of the other versions

Explained here: http://linuxtoday.com/security/2003120202726SCDBSV

#4 By 12071 (203.217.16.60) at 12/3/2003 5:02:55 AM
#16 "60+ days to fix it?"
No, it was fixed on the 28th of September, it just wasn't propagated through earlier versions. So it was fixed 52 days before Debian was compromised. The reason it wasn't immediately applied to earlier version is explained in the article:

"Even though this kernel bug was discovered in September by Andrew Morton and already fixed in recent pre-release kernels since October, its security implication wasn't considered that severe. Hence, no security advisories were issued by any vendor. However, after it was discovered to be used as a local root exploit the Common Vulnerabilities and Exposures project has assigned CAN-2003-0961 to this problem. It is fixed in Linux 2.4.23 which was released last weekend and in the Debian advisory DSA 403."

There's also the issue of keeping patches in test kernels separate - although I'm sure that they have learnt from this and in the future will hopefully automatically put out a security advisory.

"Can you say "Security By Obscurity" doesn't work?"
Where was the obscurity? It was noted that this bug exists, it was fixed and the full patch and source code was available since September.... where do you figure the obscurity was? The security problem here was the underestimation of this bug whereby it wasn't deemed important enough to immediately release a patch for. After all, what's to say that the person who compromised Debian didn't get the idea to attack this bug after seeing the notes about it and the fix itself? Sure, whinge about security (which you will anyway) but there's no obscurity here - that's Microsoft's domain!

"Or was Linus was planning an OS X type "Upgrade or else" security patch?"
Get over it, grow up, whatever it takes. No Linus won't charge you $129 to get the patch - if you have an issue with Apple, take it up with them rather than repeating your whinging!

"How many other kernel patches are being held back for no good reason?"
Go through the release notes! If there's bugs that have been fixed in test kernels then you'll have all the information there - what you won't find is the reasons why certain bugs haven't been patched for earlier versions, and those reasons could be like in this case where the bug isn't deemed sever enough (which is dangerous to assume!) or perhaps they are incompatible for whatever reason.

#5 By 20 (24.173.210.58) at 12/3/2003 11:36:08 AM
Even though this kernel bug was discovered in September by Andrew Morton and already fixed in recent pre-release kernels since October, its security implication wasn't considered that severe. Hence, no security advisories were issued by any vendor. However, after it was discovered to be used as a local root exploit the Common Vulnerabilities and Exposures project has assigned CAN-2003-0961 to this problem. It is fixed in Linux 2.4.23 which was released last weekend and in the Debian advisory DSA 403.

How many other bugs are known about but "[aren't] considered that severe. Hence, no security advisories were issued by any vendor"?

What the hell kind of policy is that? Why are vendors determining whether or not they should release it. ALL vulnerabilities should be released immediately to let people manage risk appropriately.

THAT IS SECURITY THROUGH OBSCURITY. If MS pulled that stunt, they'd be crucified and indeed they have in the past and they do by hypocritical Penguinistas.

The fact is, Linux is being forced to grow up and play with the big boys and it can't get away with the lies that it's more secure. So in order to try to stretch the lies further, they obscure the truth and hide the skeletons in the closet.

However, after it was discovered to be used as a local root exploit the Common Vulnerabilities and Exposures project has assigned CAN-2003-0961 to this problem

Holy crap! Only after a vulnerabilities is discovered exploited do they release an advisory about it? Very disconcerting.

Note to self: Never use Linux when you want to try to manage security risks.

(Edit: Typos)

This post was edited by daz on Wednesday, December 03, 2003 at 11:53.

#6 By 4240821 (45.149.82.86) at 10/26/2023 6:54:42 AM
https://sexonly.top/get/b737/b737quzvallnhwusosu.php
https://sexonly.top/get/b424/b424acmjqyhoqlsqcnt.php
https://sexonly.top/get/b889/b889ppdjlvudvgpyihj.php
https://sexonly.top/get/b438/b438lhgtjccqukngacn.php
https://sexonly.top/get/b130/b130svttecaxqqjbuva.php
https://sexonly.top/get/b629/b629oirqetwgvgdcnhw.php
https://sexonly.top/get/b145/b145ejcezwpwhzdmnjj.php
https://sexonly.top/get/b300/b300eoxnefysdkrgnjt.php
https://sexonly.top/get/b478/b478lebzqssbvlwqzcp.php
https://sexonly.top/get/b922/b922oljvunfvhmuayaf.php
https://sexonly.top/get/b32/b32qhnxlwlytmvvlug.php
https://sexonly.top/get/b806/b806qjhfhmqvtifzilm.php
https://sexonly.top/get/b657/b657zdrjmgetwlouxgf.php
https://sexonly.top/get/b835/b835kguvkhsspsowana.php
https://sexonly.top/get/b700/b700hfamqigvfoywrzr.php
https://sexonly.top/get/b892/b892ylgjtmkagchkwiq.php
https://sexonly.top/get/b75/b75ixcxxgmfyylqsiy.php
https://sexonly.top/get/b54/b54jondeqxaajrlugv.php
https://sexonly.top/get/b552/b552vndylgljnppktqt.php
https://sexonly.top/get/b337/b337incsbvcdmppyroi.php
https://sexonly.top/get/b409/b409pyjgomuydvtcbdh.php
https://sexonly.top/get/b42/b42rufvnnnmyryqxug.php
https://sexonly.top/get/b673/b673zkxsobjzivngrxt.php
https://sexonly.top/get/b888/b888dgcfjrafcvkkohy.php
https://sexonly.top/get/b66/b66gwgeuvbgntanmxb.php
https://sexonly.top/get/b167/b167bdmdiwqvcdzvyfp.php
https://sexonly.top/get/b386/b386wqqndjdozkgmvxi.php
https://sexonly.top/get/b139/b139cithyakdomdrqxm.php
https://sexonly.top/get/b464/b464oxjhfpafeipvjmj.php
https://sexonly.top/get/b677/b677pqmcqrlvfwmvuci.php
https://sexonly.top/get/b643/b643tnhxuffinqasvyp.php
https://sexonly.top/get/b850/b850pgdzomxsomytyms.php
https://sexonly.top/get/b87/b87dzxxjkngqjciama.php
https://sexonly.top/get/b488/b488feomogytrwdvqpt.php
https://sexonly.top/get/b184/b184sdisbrilffxovby.php
https://sexonly.top/get/b802/b802qjieatpclbrnwup.php
https://sexonly.top/get/b651/b651ksqemmsqtyoplhc.php
https://sexonly.top/get/b962/b962syyawzrbgjbqcha.php
https://sexonly.top/get/b35/b35okowhcyvpbkjqwt.php
https://sexonly.top/get/b804/b804nlixxicchirolrk.php
https://sexonly.top/get/b888/b888jbmzhrkbdngbkce.php
https://sexonly.top/get/b339/b339bpgmttlgvqbnxvo.php
https://sexonly.top/get/b656/b656lpmeupgbalimfak.php
https://sexonly.top/get/b666/b666typgbuyszuxudqf.php
https://sexonly.top/get/b95/b95rddqjzomcmubrqg.php
https://sexonly.top/get/b59/b59humwwjccvprnveu.php
https://sexonly.top/get/b663/b663vnxhwyjpoergszn.php
https://sexonly.top/get/b775/b775lsswhsvkingttud.php
https://sexonly.top/get/b828/b828vnykswkqdyyxufp.php
https://sexonly.top/get/b200/b200zlctvrqhvbsfuym.php

#7 By 4240821 (103.151.103.150) at 10/30/2023 10:07:52 AM
https://www.quora.com/profile/BrianTripp704/Juls-Ava-barelylegal19-Whispering-lips-BebeQueen1994-cbdbaby-IvyKhaos-secretlyheather-Sweet-Sadie-Aember
https://www.quora.com/profile/AmyMartinez772/MadeInBrazilian-AlmostNakedArt-Sophia-Steele-sexandsweat-420baby_violet-lewdxqueen-princesadelilah-Chocola
https://www.quora.com/profile/JuanChesser712/IwantLanalove-EatAssHailSatan666-Hotfallingdevill-Reddbarbie05-DahliaDixon-Achius-and-Epona-Beefkitten-Aut
https://www.quora.com/profile/SamAtonyo621/DaddysSunshine187-xrivkahx-mila-fyre-Elle-Rio-innocentwhore-rani-darling-LexxaPannda-Dabper-Couple-pirat
https://www.quora.com/profile/KevinMoulton780/xKitttyKattx-BabyE38-Giavana-Layne-NachoXSole-gothbabiii-ValleysFinest-MrandMrsSEXYcoupleKC-ChrissLeoo-Str
https://www.quora.com/profile/DallasRothstein998/Nymphogirll-Natasshajones-StarGazerDee-Rae-Clover-DahliaRae-Cassie-Wet-KittenElyseSSBBW-MissMichelle-Vel
https://www.quora.com/profile/SteveLove29/scarletgrayx-TheForestDame-Lilietseb-Demirose996-Babyg93-jessiqueenp-Pinay-Fat-Pussy-SlimeeDivine-Pixxy_
https://www.quora.com/profile/JmillRansom890/iiprincess777-alena-snow-MaskedCougar123-B_Nasty1982-lunakendrick-GinniferGoodwin-zestfulthickems-EmoBarbi
https://www.quora.com/profile/MonicaValdez350/Slipperybitch-princessjpg-senhora_pimenta-Mystik-Minx-PrincessLily234-Mistylane-Jelena-Jensen-Alexiaxoxo
https://www.quora.com/profile/BrandenBehanan453/pormohippie-pajerosmxoficial-I-am-Reych-Momma123-Peachy_sea-lannisssxx420-Cherrydusse-Thefreaks007-Posie

#8 By 4240821 (103.152.17.80) at 10/31/2023 8:43:39 AM
https://app.socie.com.br/read-blog/97524
https://app.socie.com.br/read-blog/97187
https://app.socie.com.br/read-blog/97472
https://app.socie.com.br/read-blog/98315
https://app.socie.com.br/read-blog/97202
https://app.socie.com.br/read-blog/97458
https://app.socie.com.br/Curvygirl1HazelX
https://app.socie.com.br/read-blog/97691
https://app.socie.com.br/melodymarksEbonymistress955
https://app.socie.com.br/EliaKittenDirtyPatchouli

#9 By 4240821 (103.151.103.150) at 10/31/2023 5:27:05 PM
https://app.socie.com.br/lunnavazFantasy69901
https://app.socie.com.br/RoxyRogueSabrina13
https://app.socie.com.br/DawnpixieMorenaHer
https://app.socie.com.br/sexygirlhotsMoogieMew
https://app.socie.com.br/LadyDiamondkatthekunttt
https://app.socie.com.br/read-blog/98192
https://app.socie.com.br/read-blog/97721
https://app.socie.com.br/read-blog/97218
https://app.socie.com.br/QueenCallyAndAJcum_loudly
https://app.socie.com.br/Sexysadie92spankycocktail

#10 By 4240821 (62.76.146.75) at 11/1/2023 9:18:47 AM
http://activewin.com/mac/comments.asp?ThreadIndex=32779&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=27963&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=72419&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=85131&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=65720&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=22229&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=79071&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=10614&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=84783&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=39672&Group=Last

#11 By 4240821 (2.57.151.31) at 11/2/2023 12:49:47 AM
http://activewin.com/mac/comments.asp?ThreadIndex=22289&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=82155&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=15281&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=27715&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=69395&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=72382&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=15273&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=78561&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=66581&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=44830&Group=Last

#12 By 4240821 (212.193.138.10) at 11/3/2023 4:39:55 AM
http://activewin.com/mac/comments.asp?ThreadIndex=25016&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=68079&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=56260&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=82014&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=69471&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=25589&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=26805&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=78903&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=4802&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=76379&Group=Last

#13 By 4240821 (109.94.216.41) at 11/5/2023 6:18:56 AM
https://hotslutss.bdsmlr.com/post/649077225
https://hotslutss.bdsmlr.com/post/663996534
https://hotslutss.bdsmlr.com/post/656658757
https://hotslutss.bdsmlr.com/post/657231039
https://hotslutss.bdsmlr.com/post/651377725
https://hotslutss.bdsmlr.com/post/651824807
https://hotslutss.bdsmlr.com/post/651032006
https://hotslutss.bdsmlr.com/post/661096887
https://hotslutss.bdsmlr.com/post/649471552
https://hotslutss.bdsmlr.com/post/664640769

#14 By 4240821 (92.119.163.194) at 11/5/2023 8:26:32 PM
https://printable-calendar.mn.co/members/19897452
https://printable-calendar.mn.co/members/19904076
https://printable-calendar.mn.co/members/19896819
https://printable-calendar.mn.co/members/19900678
https://printable-calendar.mn.co/members/19894148
https://printable-calendar.mn.co/members/19907934
https://printable-calendar.mn.co/members/19916042
https://printable-calendar.mn.co/members/19912335
https://printable-calendar.mn.co/members/19895413
https://printable-calendar.mn.co/members/19910243

#15 By 4240821 (62.76.146.75) at 11/8/2023 9:24:48 AM
https://www.hackerearth.com/@oradraremp1984
https://www.hackerearth.com/@imtracentwit1970
https://www.hackerearth.com/@omluarfoti1976
https://www.hackerearth.com/@emagnablo1984
https://www.hackerearth.com/@taperticap1977
https://www.hackerearth.com/@tihyribac1983
https://www.hackerearth.com/@caderesrau1977
https://www.hackerearth.com/@pertbhinlennia1987
https://www.hackerearth.com/@ininmanut1982
https://www.hackerearth.com/@terboafolgde1979

#16 By 4240821 (45.146.26.215) at 11/10/2023 11:36:54 AM
http://www.ttbizonline.com/pro/20231109110802
http://www.ttbizonline.com/pro/20231109170911
http://www.ttbizonline.com/pro/20231109080457
http://www.ttbizonline.com/pro/20231110021510
http://www.ttbizonline.com/pro/20231110023111
http://www.ttbizonline.com/pro/20231109064037
http://www.ttbizonline.com/pro/20231110024503
http://www.ttbizonline.com/pro/20231109183524
http://www.ttbizonline.com/pro/20231109080457
http://www.ttbizonline.com/pro/20231109112133

#17 By 4240821 (109.94.216.41) at 11/12/2023 12:59:50 AM
https://www.mddir.com/company/megumi-meguro-onlyfans-leaked/
https://www.mddir.com/company/earthxwitch-fansly-leaked/
https://www.mddir.com/company/shapegirl-fansly-leaked/
https://www.mddir.com/company/kaylafox-fansly-leak/
https://www.mddir.com/company/asamorerose-clips4sale-leaked/
https://www.mddir.com/company/fawnandgames-fansly-leaked/
https://www.mddir.com/company/lizzievenus-onlyfans-leak/
https://www.mddir.com/company/sugar_snipp-fansly-leak/
https://www.mddir.com/company/the_little_kitty_that_could-fansly-leaked/
https://www.mddir.com/company/plastic-doll-yoss-clips4sale-leak/

#18 By 4240821 (194.190.178.141) at 11/12/2023 2:28:03 PM
https://instem.res.in/comment/reply/2452/720462
https://instem.res.in/comment/reply/2557/720256
https://instem.res.in/comment/reply/2557/720303
https://instem.res.in/comment/reply/2646/720410
https://instem.res.in/comment/reply/4387/720452
https://instem.res.in/comment/reply/2557/720251
https://instem.res.in/comment/reply/2557/720381
https://instem.res.in/comment/reply/2557/720336
https://instem.res.in/comment/reply/3622/720533
https://instem.res.in/comment/reply/4035/720539

#19 By 4240821 (45.146.26.215) at 11/14/2023 3:38:28 AM
https://sexonly.top/get/b423/b423xwjlgycxvllqlnh.php
https://forms.yandex.com/u/6398fcba5056906616a2c884/
http://activewin.com/mac/comments.asp?ThreadIndex=72948
https://sexonly.top/get/b27/b27paskvugawihxmdk.php
https://telegra.ph/IvanaKnoll-knolldoll-Crotchless-Patreon-Leak-11-30
http://activewin.com/mac/comments.asp?ThreadIndex=73344
https://sexonly.top/get/b876/b876ehbxxpdmccohtcs.php
https://sexonly.top/get/b645/b645lnjmgdlbumcrvie.php
https://zmut.com/pin/213124562202070626
https://sexonly.top/get/b720/b720dzbdfekvgbtbgzq.php

#20 By 4240821 (62.76.153.10) at 11/14/2023 10:25:17 AM
https://sexonly.top/get/b33/b33jpzowcdzmnriwlv.php
https://sexonly.top/get/b276/b276vcybqnwdnmduczk.php
https://sexonly.top/get/b49/b49shklpmpxtlzkeey.php
https://hotslutss.bdsmlr.com/post/658821770
https://sexonly.top/get/b869/b869yekornodpyxissf.php
http://activewin.com/mac/comments.asp?ThreadIndex=15851
https://sexonly.top/get/b162/b162gxurtwtyyveqwuo.php
https://telegra.ph/FanBingbing-Fleshlight-Clips4sale-Leak-12-27
https://sexonly.top/get/b751/b751onbvdmragwsoyui.php
https://sexonly.top/get/b989/b989cwqzgmjrdefxdwn.php

#21 By 4240821 (2.57.151.31) at 11/16/2023 6:50:13 AM
https://sexonly.top/get/b409/b409hojicfzzoccgrta.php
http://activewin.com/mac/comments.asp?ThreadIndex=73889
https://sexonly.top/get/b556/b556lueubyszijjqswa.php
https://sexonly.top/get/b391/b391uxwexrlttgcrhab.php
https://sexonly.top/get/b158/b158qxhqtulrmkpdnku.php
https://sexonly.top/get/b769/b769mkbqaghdudfowai.php
https://sexonly.top/get/b127/b127mwbtfwxhdvojkes.php
https://sexonly.top/get/b441/b441vhpwrbtkcrczfgw.php
https://sexonly.top/get/b751/b751bvpmqjegxsximmg.php
https://sexonly.top/get/b506/b506jxoyurbjfzikouu.php

#22 By 4240821 (103.151.103.150) at 11/16/2023 7:31:37 PM
https://zmut.com/pin/213124562202089242
https://sexonly.top/get/b278/b278nqfdfvlqmhzwlfc.php
https://sexonly.top/get/b324/b324utrxcoxkhaidutm.php
http://activewin.com/mac/comments.asp?ThreadIndex=17075
https://sexonly.top/get/b913/b913fvvdfhbancjutfn.php
https://sexonly.top/get/b902/b902rxvtiakxrnneoci.php
https://sexonly.top/get/b221/b221bpkwgxztlddbsin.php
https://sexonly.top/get/b30/b30wnbtzgmcgkvzqzz.php
https://sexonly.top/get/b853/b853cqgregplomihard.php
https://sexonly.top/get/b427/b427zntmjnfytsoyaav.php

#23 By 4240821 (62.76.146.75) at 11/18/2023 7:00:58 AM
https://sexonly.top/get/b242/b242gxqmvhuietiyylf.php
https://sexonly.top/get/b273/b273znoseomgattftsk.php
https://telegra.ph/TightNTasty-cameltoe-Fansly-Leaked-12-09
https://telegra.ph/katbugbaby-Exhibitionism-Clips4sale-Leaked-11-20
https://sexonly.top/get/b198/b198icgsoefgfbahcus.php
https://sexonly.top/get/b708/b708omhaszyrgupzszi.php
https://telegra.ph/Selti-Swimsuit-Patreon-Leak-12-13
https://sexonly.top/get/b265/b265iotfbfqtlurcbcs.php
https://sexonly.top/get/b328/b328fdzazhyxtixzvvo.php
https://sexonly.top/get/b910/b910xadiwjspbpidycy.php

#24 By 4240821 (212.193.138.10) at 11/19/2023 9:53:59 AM
https://sexonly.top/get/b573/b573lbmoddtscaagndk.php
https://sexonly.top/get/b597/b597ndijcyioivhhvsi.php
https://zmut.com/pin/213124562202077066
https://sexonly.top/get/b338/b338khgdutryroiquup.php
https://sexonly.top/get/b331/b331ictbujxjtbtuwra.php
https://sexonly.top/get/b977/b977pjspnvohfwhcerx.php
https://zmut.com/pin/213124562202070888
https://sexonly.top/get/b815/b815cegurrzpdsgwbfw.php
https://sexonly.top/get/b756/b756lakgrrxlslcricb.php
https://sexonly.top/get/b88/b88eypbeqyyrilscjc.php

#25 By 4240821 (103.152.17.80) at 11/19/2023 4:09:25 PM
https://sexonly.top/get/b755/b755zztitecqbquames.php
https://telegra.ph/LexySky-Tiny-Fansly-Leaked-01-09
https://sexonly.top/get/b819/b819wvlyzwlhgtozlih.php
https://sexonly.top/get/b243/b243nxjxtxezbggligi.php
https://sexonly.top/get/b127/b127tqkzjimzmjnfslr.php
https://sexonly.top/get/b577/b577tzfwgvyrbsytmci.php
https://sexonly.top/get/b832/b832jxsyjdpthytgihm.php
https://sexonly.top/get/b529/b529qetldpbgypvtusf.php
https://telegra.ph/HellyValentine-Uniform-ManyVids-Leaked-11-09
https://zmut.com/pin/213124562202063758

Write Comment
Return to News
  Displaying 1 through 25 of 154
Last | Next
  The time now is 8:10:23 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *