[BlueOnyx:15513] chkrootkit vulnerablility

George F. Nemeyer tigerwolf at tigerden.com
Sat Jun 7 13:56:10 -05 2014


Chrootkit can be tricked into executing code in /tmp as root.

Info here:

http://www.openwall.com/lists/oss-security/2014/06/04/9

According to the report, this appears to have a simple fix.

Also, there's a new version (0.50)  was released on 4 June:

http://www.chkrootkit.org/

I assume the new release incorporates the fix, but haven't looked yet.

Anyone running chkrootkit should take notice.

=^_^=  Tigerwolf



More information about the Blueonyx mailing list