Vulnerability in GLIBC (hacker can get root access) get FIX

General Discussion of atomic repo and development projects.

Ask for help here with anything else not covered by other forums.
barabashko
Forum User
Forum User
Posts: 15
Joined: Sun Apr 11, 2010 3:02 am

Vulnerability in GLIBC (hacker can get root access) get FIX

Unread post by barabashko »

The underlying bug in GNU libc (glibc) can be used to gain root access given a local account, and an exploit for the vulnerability has been publicly released. We understand that major Linux distributions, including Red Hat Enterprise Linux and CentOS, are currently preparing updated glibc packages.

We wanted to reach out and let you know that Ksplice has prepared patched glibc packages for the Red Hat Enterprise Linux 5 and CentOS 5 distributions available immediately, as a courtesy to administrators concerned about the vulnerability. Customers who want to patch this vulnerability now, in advance of a release by their Linux distribution, may do so from our updated packages. We understand major vendors' updates will be based on the same patch. Ksplice will support these patched glibc packages until vendor-supplied packages become available.
package to fix
https://www.ksplice.com/cve-2010-3847

there is exploit over internet
BruceLee
Forum Regular
Forum Regular
Posts: 879
Joined: Sat Mar 28, 2009 6:58 pm
Location: Germany

Re: Vulnerability in GLIBC (hacker can get root access) get

Unread post by BruceLee »

centos and rhel released the update:

https://rhn.redhat.com/errata/RHSA-2010-0787.html
Post Reply