exit.c in Linux kernel 2.6-test9-CVS, as stored on kernel.bkbits.net, was modified to contain a backdoor, which could allow local users to elevate their privileges by passing __WCLONE|__WALL to the sys_wait4 function.
Link | Tags |
---|---|
http://www.ussg.iu.edu/hypermail/linux/kernel/0311.0/0621.html | mailing list |
http://www.securityfocus.com/bid/8987 | vdb entry |
http://www.ussg.iu.edu/hypermail/linux/kernel/0311.0/0630.html | mailing list exploit |
http://www.ussg.iu.edu/hypermail/linux/kernel/0311.0/0627.html | mailing list exploit |