From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([69.77.167.62] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1LWxAW-0006ih-26 for garchives@archives.gentoo.org; Tue, 10 Feb 2009 18:17:12 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 8F5F4E02E3; Tue, 10 Feb 2009 18:17:10 +0000 (UTC) Received: from virtual.dyc.edu (unknown [65.249.164.70]) by pigeon.gentoo.org (Postfix) with ESMTP id 79065E02E3 for ; Tue, 10 Feb 2009 18:17:10 +0000 (UTC) Received: from [192.168.3.133] (unknown [192.168.3.133]) by virtual.dyc.edu (Postfix) with ESMTP id 28411120071 for ; Tue, 10 Feb 2009 13:17:09 -0500 (EST) Message-ID: <4991C4A0.2070303@opensource.dyc.edu> Date: Tue, 10 Feb 2009 13:17:04 -0500 From: basile User-Agent: Thunderbird 2.0.0.19 (X11/20090105) Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-hardened@lists.gentoo.org Reply-to: gentoo-hardened@lists.gentoo.org MIME-Version: 1.0 To: gentoo-hardened@lists.gentoo.org Subject: [gentoo-hardened] New Pax feature in 2.6.26 regarding ref. counter overflows X-Enigmail-Version: 0.95.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="------------enigE4980B87B5933A82008299B2" X-Archives-Salt: e1d49899-22bb-4f77-818f-0abc94fab21e X-Archives-Hash: e8780b2a7650d3072d7a4492dbb3e928 This is an OpenPGP/MIME signed message (RFC 2440 and 3156) --------------enigE4980B87B5933A82008299B2 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Hi everyone, I noticed a new option in configuring PaX in the kernel with version 2.6.26. It says: Prevent various kernel object reference counter overflows The description says that it "prevents overflowing various (but not all) kinds of object reference counters." I'm not familiar with this exploit technique. Does anyone know of any proof of concept code? --=20 Anthony G. Basile, Ph.D. Chair of Information Technology D'Youville College Buffalo, NY 14201 USA (716) 829-8197 --------------enigE4980B87B5933A82008299B2 Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iEYEARECAAYFAkmRxKQACgkQl5yvQNBFVTU4RACfXpXgdJFEKAdqj15dHlCYkRkf YJIAniJq09LBWh1Js/6k2ac+Xs5ZupJP =E8f/ -----END PGP SIGNATURE----- --------------enigE4980B87B5933A82008299B2--