Red Hat Bugzilla – Bug 142969
kernel denial of service vulnerability and exploit
Last modified: 2015-01-04 17:14:05 EST
From Bugzilla Helper:
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; X11; Linux i686) Opera
Description of problem:
Crash binary (44 bytes) for the Linux kernel 2.4.21-20.EL and
probably earlier versions, freezing the complete system, even when
executed without root privileges.
Version-Release number of selected component (if applicable):
2.4.21-20.EL (Red Hat Enterprise Linux AS release 3 / Taroon Update
Steps to Reproduce:
2.chmod 755 exploit
3../exploit (as non-root)
4.freeze and cook up an excuse for your sysadmins
Actual Results: The system freezes, so nothing world-astonishing
Expected Results: No crash/freeze, there are other OS's for this.
There seems to be a problem with the e_phnum byte in the ELF header,
which crashes the linker/kernel, when it holds a zero.
*** Bug 142971 has been marked as a duplicate of this bug. ***
*** This bug has been marked as a duplicate of 142965 ***