Highly exploitable Linux kernel bug found, patched
Loverock Davidson | 08/17/09
|

Ignorance is bliss
rarsa | 08/17/09
|
 
You must be the most blissful person around then
eqpc | 08/17/09
|
 
It is
Loverock Davidson | 08/17/09
|

BWAHAHAHAHA
linuxer | 08/18/09
|

Did you miss the "local" part?
AzuMao | 09/09/09
|
LOL! I can't stop laughing
Loverock Davidson | 08/17/09
|

It is patched now..
eqpc | 08/17/09
|
 
Not acceptable for Windows. So it's not acceptable for Linux.
ye | 08/17/09
|
  
Agreed
Michael Kelly | 08/17/09
|
   
Just pointing out the hypocrissy.
ye | 08/17/09
|
    
Fixing the flaw
chromeronin | 08/17/09
|
    
yEP
gnesterenko | 08/17/09
|
    
@gnesterenko: Be more efficient ...
fr0thy2 | 08/17/09
|
   
Is it really patched?
MadWhiteHatter | 09/10/09
|
    
double post =(
Firestem4 | 09/10/09
|
    
Re: Is it really patched?
Firestem4 | 09/10/09
|
    
Linux updates
TucsonGuy | 09/12/09
|
  
I completely agree with you.
eqpc | 08/17/09
|
   
Exactly
TylerM89 | 08/17/09
|
    
You'd have to follow the link...
jasonp@... | 08/17/09
|
    
"point of OSS was the fact information and code was open to the community"
fr0thy2 | 08/17/09
|
   
Vulnerability
Tom6 | 09/11/09
|
  
So you admit...
jasonp@... | 08/17/09
|
   
I admit no such thing.
ye | 08/17/09
|
    
Though commendable...
Viva la crank dodo | 08/18/09
|
   
odd
Badgered | 08/17/09
|
    
Sure...it was in his subject line
jasonp@... | 08/17/09
|
     
Have you recently suffered a blow to the head?
James T. Kirk | 08/17/09
|
     
Nice one Jason!
fr0thy2 | 08/17/09
|
 
No, it is only patched in the source tree so far
honeymonster | 08/17/09
|
  
Thanks for the info
eqpc | 08/17/09
|
  
Not quite.
Zogg | 08/17/09
|

LOL - good one
JT82 | 08/17/09
|
 
So you needn't even wait for the vendor to catch up ...
fr0thy2 | 08/17/09
|

Strange
Loverock Davidson | 08/17/09
|
 
Um you dont now how OSS works do you?
JT82 | 08/17/09
|
  
Oh but I do
Loverock Davidson | 08/17/09
|
   
Message has been deleted.
jasonp@... | 08/17/09
|
   
You're thinking of BSD
Michael Kelly | 08/17/09
|
    
That is the advantage of BSD over linux
Loverock Davidson | 08/17/09
|
   
No it's optional. That means non-mandatory, ie, you have the choice.
fr0thy2 | 08/17/09
|
 
Not strange
fr0thy2 | 08/17/09
|

Linux IS more secure.
Jabryl | 08/17/09
|
 
no it is not
Loverock Davidson | 08/17/09
|
  
Source?
Jabryl | 08/17/09
|
   
Do I need one?
Loverock Davidson | 08/17/09
|
    
You will have to do better than that.
Jabryl | 08/17/09
|
     
Better? I dont' think so
Loverock Davidson | 08/17/09
|
     
You provided nothing.
Jabryl | 08/17/09
|
     
Get used to...
Viva la crank dodo | 08/17/09
|
   
Don't challenge him on this!
B.O.F.H. | 08/17/09
|
   
Source: IBM. Linux kernel has 2 times more vulns than Vista
honeymonster | 08/17/09
|
    
HEH
gnesterenko | 08/18/09
|
    
Keyword: DISCLOSED
Rezinunts | 08/19/09
|
    
sorry, but...
pgit | 09/10/09
|
  
You are...
linuxer | 08/18/09
|
   
Reading the study helps
Mike_ | 08/26/09
|
What a way to start a Monday morning!
Loverock Davidson | 08/17/09
|

Its no more...
Viva la crank dodo | 08/17/09
|
Exploitable in all Linux distros at least since 2001
honeymonster | 08/17/09
|

Many eyes
Michael Kelly | 08/17/09
|
 
If we have to wait 8 years for many eyes
honeymonster | 08/17/09
|
  
Well then you must have a better model in mind
Michael Kelly | 08/17/09
|
   
The point being "many eyes" isn't any better.
ye | 08/17/09
|
    
If "many eyes" is the only thing being relied on
Michael Kelly | 08/17/09
|
     
I've seen nothing to support that many eyes adds any benefit.
ye | 08/17/09
|
     
Ye - Its 6 or 1, half dozen of the other.
JT82 | 08/17/09
|
     
@JT82: "Many Eyes" has nothing to do with quick patching.
ye | 08/17/09
|
     
@YE: "Many eyes"
JT82 | 08/17/09
|
     
@JT82: It's your opinion eight years is a good metric?
ye | 08/17/09
|
     
@YE: Well how do we know how long
JT82 | 08/17/09
|
     
@JT82: There is third party tracking of some bugs.
ye | 08/17/09
|
     
@YE: But I wouldnt discount it either..
JT82 | 08/17/09
|
     
@JT82: With an eight year old bug I can't put...
ye | 08/17/09
|
     
@ye... Eight years
Michael Kelly | 08/17/09
|
     
@Michael Kelly: I conclude no such thing.
ye | 08/17/09
|
     
Sigh, as predictable and trite as usual, ye.
Zogg | 08/17/09
|
    
How do you know?
jasonp@... | 08/17/09
|
     
An eight year old bug.
ye | 08/17/09
|

Bizarre post
Richard Flude | 08/17/09
|
What protocols are affected?
Michael Kelly | 08/17/09
|

I believe the advisory gave a list
Zogg | 08/17/09
|
"Many eyes does not work"
Aussie_Troll | 08/17/09
|

It already is big time
Michael Kelly | 08/17/09
|
 
Ehh, arguable
gnesterenko | 08/17/09
|
  
Yeah do so, and see if anyone can see your point?
fr0thy2 | 08/17/09
|
   
Probably
gnesterenko | 08/17/09
|
 
Linux has never relied solely on "many eyes".
Zogg | 08/17/09
|

The big time? Like running the most targeted sites on the net?
fr0thy2 | 08/17/09
|
 
lol true
gnesterenko | 08/17/09
|
Waiting...
TylerM89 | 08/17/09
|

And still waiting ....
fr0thy2 | 08/17/09
|

Bash the zune?
EMonkIA | 08/17/09
|
Ok - all of this is fair..
JT82 | 08/17/09
|

Yet...
TylerM89 | 08/17/09
|
 
Thats true...
JT82 | 08/17/09
|
  
True
TylerM89 | 08/17/09
|
   
Holy baloni!
gnesterenko | 08/17/09
|
   
"Every computer should have virus protection" BULLSIHT!
fr0thy2 | 08/17/09
|
    
really now
gnesterenko | 08/17/09
|
    
Some people would seem to disagree with your... "opinion"
James T. Kirk | 08/17/09
|
     
Do any of these actually work for FOSS...
JCitizen | 08/20/09
|
    
Protection to not pass it along
Boot_Agnostic | 08/18/09
|

Situation is two-fold
Michael Kelly | 08/17/09
|
 
Exactly, no excuses at all.
JT82 | 08/17/09
|

hmm...
Badgered | 08/17/09
|
 
If thats how you want to take it
JT82 | 08/17/09
|
  
Obscurity is in reference to market share and not...
ye | 08/17/09
|
   
AHhhhh..but i never brought that up..
JT82 | 08/17/09
|
    
I never said you did bring it up.
ye | 08/17/09
|
   
Server market share?
fr0thy2 | 08/17/09
|
    
No, all those nasty hackers
honeymonster | 08/17/09
|

Exploits ARE in the wild. Web sites are being compromised
honeymonster | 08/17/09
|
 
ANother nail on the head
gnesterenko | 08/17/09
|
 
"They entered the system through a web application exploit"
fr0thy2 | 08/17/09
|
  
last time i acknowledge this non-sense
gnesterenko | 08/17/09
|
  
Yes, entered through a web app, and USED THIS VULN TO TAKE OVER THE BOX
honeymonster | 08/17/09
|
Workaround for Ubuntu 9.04
JT82 | 08/17/09
|
RE: Highly exploitable Linux kernel bug found, patched
ksbenjoe | 08/18/09
|
RE: Highly exploitable Linux kernel bug found, patched
ksbenjoe | 08/18/09
|
RE: Highly exploitable Linux kernel bug found, patched
Chester Wisniewski - Sophos | 08/18/09
|
Ha!
VoiceOfLogic | 08/18/09
|
Updates & Such
Acid_1 | 08/19/09
|

I agree, as long as FOSS users and...
JCitizen | 08/20/09
|