Date: Mon, 11 Jul 2005 08:26:21 +0200
From: Suresec Advisories <advisories@suresec.org.>
To: [email protected], [email protected]Subject: [ Suresec Advisories ] - Linux kernel ia32 compatibility (ia64/x86-64)
race condition
Content-Type: text/plain; charset=us-ascii; format=flowed
Content-Transfer-Encoding: 7bit
X-Virus-Scanned: antivirus-gw at tyumen.ru
Suresec Security Advisory - #00004
10/07/05
Linux kernel ia32 compatibility race condition
Advisory: http://www.suresec.org/advisories/adv4.pdf <http://www.suresec.org/advisories/adv3.pdf>
Description:
A race condition vulnerability has been found in the ia32 compatibility
execve() systemcall. The race condition may lead to heap corruption.
Risk:
Exploitation of this vulnerability may results in panics, oopses or
in the worst case code exection at ring 0.
Credit:
The vulnerability was discovered by Ilja van Sprundel.