Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 464
Alerts This Week
Warning Icon 1 464

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
98

Red Hat Linux 9: RHSA-2003:135-00 Critical: Ptrace Privilege Escalation

The kernel package version 2.4.20-6 has a security hole in ptrace. Using USB CD-ROMs on some ServerWorks systems can hang older versions of the kernel.. ` --------------------------------------------------------------------- Red Hat Security Advisory Synopsis: Updated 2.4 kernel fixes USB storage Advisory ID: RHSA-2003:135-00 Issue date: 2003-04-08 Updated on: 2003-04-08 Product: Red Hat Linux Keywords: ptrace usb storage cdrom bind netdump Cross references: RHSA-2003-098 Obsoletes: CVE Names: CAN-2003-0127 --------------------------------------------------------------------- 1. Topic: Updated kernel packages for Red Hat Linux 9 are now available. The kernel package version 2.4.20-6 has a security hole in ptrace. Using USB CD-ROMs on some ServerWorks systems can hang older versions of the kernel. 2. Relevant releases/architectures: Red Hat Linux 9 - athlon, i386, i586, i686 3. Problem description: The Linux kernel handles the basic functions of the operating system. A vulnerability in ptrace handling has been found in version 2.4.20-6 of the kernel. This vulnerability makes it possible for local users to gain elevated (root) privileges without authorization. This vulnerability is fixed in kernel-2.4.20-8 and kernel-2.4.20-9. Please note this vulnerability only affects Red Hat Linux 9 boxed sets manufactured for distribution within the United States. The part numbers, which can be found on the bottom flap of the box, are RHF0120US and RHF0121US. Copies of Red Hat Linux 9 obtained through other means (such as from Red Hat Network, FTP, or international boxed sets) already contain kernel-2.4.20-8 and are therefore not vulnerable to this issue. An NPTL support defect in the kernel causes bind not to restart on uniprocessor systems; this bug has been fixed in kernel-2.4.20-9. USB mass storage devices (in particular, USB CD-ROMs) and the ohci driver sometimes causes system hangs; this defect has beenfixed. Additionally, support for the tg3, e100, and e1000 drivers has been added. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. To use Red Hat Network to upgrade the kernel, launch the Red Hat Update Agent with the following command: up2date This will start an interactive process that will result in the appropriate RPMs being upgraded on your system. Note that you need to select the kernel explicitly if you are using the default configuration of up2date. To install kernel packages manually, use "rpm -ivh " and modify system settings to boot the kernel you have installed. To do this, edit /boot/grub/grub.conf and change the default entry to "default=0" (or, if you have chosen to use LILO as your boot loader, edit /etc/lilo.conf and run lilo) Do not use "rpm -Uvh" as that will remove your running kernel binaries from your system. You may use "rpm -e" to remove old kernels after determining that the new kernel functions properly on your system. 5. RPMs required: Red Hat Linux 9: SRPMS: athlon: i386: i586: i686: 6. Verification: MD5 sum Package Name -------------------------------------------------------------------------- 907a4a6ccd687be8cdb4c38b66d10e67 9/en/os/SRPMS/kernel-2.4.20-9.src.rpm 3cf6f66ef44bd670cacf4768b20f503c 9/en/os/athlon/kernel-2.4.20-9.athlon.rpm 984d637b03b999ec8d09d778acc06c04 9/en/os/athlon/kernel-smp-2.4.20-9.athlon.rpm 18d0088eae5b5f2daf2f3a955f0812e3 9/en/os/i386/kernel-BOOT-2.4.20-9.i386.rpm b987cbd4bbec07a65ca882e8276f7d96 9/en/os/i386/kernel-doc-2.4.20-9.i386.rpm 153b636ac64f7f52e62f1fba47b0ccf7 9/en/os/i386/kernel-source-2.4.20-9.i386.rpm 7aed26e3c4393f433255e3aa4d0bb409 9/en/os/i586/kernel-2.4.20-9.i586.rpm c78a4bb56e6acf96375ebb4a646f6826 9/en/os/i686/kernel-2.4.20-9.i686.rpm 0b9ce410c8a3e7639b8a2e82a53abf0e 9/en/os/i686/kernel-bigmem-2.4.20-9.i686.rpm 3ad01acbf3504ef601518e0489d5ce3f9/en/os/i686/kernel-smp-2.4.20-9.i686.rpm These packages are GPG signed by Red Hat for security. Our key is available at All Red Hat products You can verify each package with the following command: rpm --checksig -v If you only wish to verify that each package has not been corrupted or tampered with, examine only the md5sum with the following command: md5sum 7. References: CVE -CVE-2003-0127 8. Contact: The Red Hat security contact is . More contact details at All Red Hat products Copyright 2003 Red Hat, Inc. _______________________________________________ Red Hat-watch-list mailing list To unsubscribe, visit: `. Patch fixes ptrace exploit in Red Hat Linux kernel 2.4.20-6, enhancing system security and USB reliability.. RedHat Linux Security, ptrace Exploit, Kernel Vulnerability Response. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Apr 09, 2003 Critical Red Hat
87

Debian 3.0 DSA-276-1 Critical: Local Escalation From ptrace Flaw

The kernel module loader in Linux 2.2 and Linux 2.4 kernels has a flaw in ptrace.. - -------------------------------------------------------------------------- Debian Security Advisory DSA 276-1 This email address is being protected from spambots. You need JavaScript enabled to view it. Debian -- Security Information Martin Schulze April 3rd, 2003 Debian -- Debian security FAQ - -------------------------------------------------------------------------- Packages : kernel-patch-2.4.17-s390, kernel-image-2.4.17-s390 Vulnerability : local privilege escalation Problem-Type : local Debian-specific: no CVE Id : CAN-2003-0127 The kernel module loader in Linux 2.2 and Linux 2.4 kernels has a flaw in ptrace. This hole allows local users to obtain root privileges by using ptrace to attach to a child process that is spawned by the kernel. Remote exploitation of this hole is not possible. This advisory only covers kernel packages for the S/390 architecture. Other architectures will be covered by separate advisories. For the stable distribution (woody) this problem has been fixed in the following versions: kernel-patch-2.4.17-s390: version 0.0.20020816-0.woody.1.1 kernel-image-2.4.17-s390: version 2.4.17-2.woody.2.2 The old stable distribution (potato) is not affected by this problem for this architecture since s390 was first released with Debian GNU/Linux 3.0 (woody). For the unstable distribution (sid) this problem will be fixed soon. We recommend that you upgrade your kernel-images packages immediately. Upgrade Instructions - -------------------- wget url will fetch the file for you dpkg -i file.deb will install the referenced file. If you are using the apt-get package manager, use the line for sources.list as given below: apt-get update will update the internal database apt-get upgrade will install corrected packages You may use an automated update by adding the resources from the footer to the proper configuration. Debian GNU/Linux 3.0alias woody - -------------------------------- Source archives: Size/MD5 checksum: 793 797d475344401f5fb9ad14deb88cd9eb Size/MD5 checksum: 6640 0fa8c3bc6c33d5fe47200e2e78c895fb Size/MD5 checksum: 338001 5979fbe7c3325033536dfd3914e22dbd Size/MD5 checksum: 766 4ed91ba4468490b1f000f2f50fefcfcd Size/MD5 checksum: 7041 aa4841ee18ad551085aac60b2afd156f Architecture independent components: Size/MD5 checksum: 301464 691bc1a529cb6125bb04ca43d795c139 IBM S/390 architecture: Size/MD5 checksum: 3316464 5e748d0b8376f80bcbc6f1fea8d73b64 Size/MD5 checksum: 1339368 fa1ff23854a5ae570efec050bc42eb13 These files will probably be moved into the stable distribution on its next revision. - --------------------------------------------------------------------------------- For apt-get: deb Debian -- Security Information stable/updates main For dpkg-ftp: dists/stable/updates/main Mailing list: This email address is being protected from spambots. You need JavaScript enabled to view it. Package info: `apt-cache show ' and https://www.debian.org/distrib/packages . - -------------------------------------------------------------------------- Debian Security Advisor. linux, kernel, module, loader, kernels, ptrace, ----------------. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Apr 03, 2003 Critical Debian
91

Gentoo: 2003-03-21 Moderate Advisory for Ptrace Flaw in Kernels

The Linux 2.2 and Linux 2.4 kernels have a flaw in ptrace. This hole allows local users to obtain full privileges.. - - --------------------------------------------------------------------- GENTOO LINUX SECURITY ANNOUNCEMENT 200303-17 - - --------------------------------------------------------------------- PACKAGE : kernel SUMMARY : ptrace flaw DATE : 2003-03-21 08:59 UTC EXPLOIT : local VERSIONS AFFECTED : All except 2.5 FIXED VERSION : Kernels with patch applied CVE : CAN-2003-0127 - - --------------------------------------------------------------------- - From advisory: "The Linux 2.2 and Linux 2.4 kernels have a flaw in ptrace. This hole allows local users to obtain full privileges. Remote exploitation of this hole is not possible. Linux 2.5 is not believed to be vulnerable." Read the full advisory at: http://marc.theaimsgroup.com/?l=linux-kernel&m=104791735604202&w=2 SOLUTION It is recommended that all Gentoo Linux users upgrade their kernels. If you are running any of gentoo-sources, gs-sources, pfeifer-sources sparc-sources or xfs-sources updates are available. Sync your tree and run emerge to install the latest version of the package. Then compile and install your new kernel and reboot. If you are using an other kernel package which hasn't been updated or download your own sources you can download a patch from /linux-2.4.20-ptrace.patch and manually patch your kernel. - - --------------------------------------------------------------------- This email address is being protected from spambots. You need JavaScript enabled to view it. - GnuPG key is available at - - --------------------------------------------------------------------- . Critical ptrace vulnerability allows local users on kernels 2.6 and 2.7 to gain unauthorized privileges, posing significant security risks for Gentoo systems. Gentoo Linux,Kernels,Ptrace Flaw,Local Exploit,Security Patches. . LinuxSecurity.com Team

Calendar%202 Mar 21, 2003 Gentoo
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200