Spotlight | Reviews | Current Issue | Academy | Newsletter | Subscribe | Shop |
Departments

Partner Links
Make your own website
WinWeb OnlineOffice
Comparing prices of hardware is worth it.
Price Comparison
UK Linux Jobs
What:
Where:
Country:
vacatures Netherlands njobs Linux vacatures
arbeit Deutschland njobs Linux arbeit
work United Kingdom njobs Linux jobs
Lavoro Italia njobs Linux lavoro
Emploi France njobs Linux emploi
trabajo Espana njobs Linux trabajo

user friendly

Admin Magazine

ADMIN Network & Security

Subscribe now and save!

ADMIN - Explore the new world of system administration! Special introductory offer! Order by September 30th to save 10% off the regular subscription price! Each issue delivers technical solutions to the real-world problems you face every day. Learn the latest techniques for better:

  • network security
  • system management
  • troubleshooting
  • performance tuning
  • virtualization
  • cloud computing

 

on Windows, Linux, Solaris, and popular varieties of Unix.

http://www.admin-magazine.com/

  linux-magazine.com » Online » News » Security Bugs in Kernel and Rsync  

Print this page. Recommend
Share

Security Bugs in Kernel and Rsync

Security researchers at Secunia have reported two security bugs in the Rsync synchronization tool and one in the current Linux kernel.

All current versions of Rsync are affected by the bug according to the developers. The first vulnerability affects configurations in which the Rsync daemon runs with the "use chroot = no" option set. This gives attackers the ability to set up symlinks outside of the module’s hierarchy and thus gain write access to system components to work around security settings.

The second vulnerability is due to an error in the "exclude", "exclude from" and "filter" options which also allow attackers avoid security limits with symlinks, but with the restriction here that the attacker needs to know the name of the file to attack. The Rsync team’s security advisory contains more details.

The kernel vulnerability affects the ISDN subsystem in the current 2.6.23 version, and possibly older versions. A boundary error in the "isdn_net_setcfg()" function can cause a buffer overflow. The affected file is "drivers/isdn/i4l/isdn_net.c". To exploit the vulnerability, an attacker would need to address a carefully crafted IOCTL request to the "/dev/isdnctrl" pseudo device, and this assumes write privileges for the device. For more details on the bug and the affected file, see Bugreport 9416.

Secunia says that all three bugs are moderately critical. Whereas the Rsync developers have already released a patch that closes both gaps, the error in the kernel’s ISDN subsystem still exists. However, patches have been sent to the maintainers in question the bug report states. Rsync users are advised to read the updated rsyncd.conf manpage, expecially the "munge symlinks" section, in addition to applying the patch.

(Jan Rähm)

Comments


Print this page. Recommend
Share
Related Articles
Kernel 2.6.25: 64 Bit Systems At Risk
Security Bug in Konqueror, Updates for Seamonkey & Co
Security Bug in Legacy Unix HP-UX
Apache Closes Down Vulnerabilities
Industry Consortium Rivalry over Crypto Standards
Version 2.5 of Gibraltar Security Software Released
No More Downloads!

Save the download and take Linux Magazine DVDs instead.

Each DVD contains a full distro like Ubuntu, SUSE, Mandriva, Fedora, or Debian and comes with the corresponding issue of Linux Magazine.

Don't waste time downloading Linux!

more...