<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>GO IT WORLD &#124; IT TECH &#124; IT NEWS &#187; kernel</title>
	<atom:link href="http://www.goitworld.com/tag/kernel/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.goitworld.com</link>
	<description>goitworld.com</description>
	<lastBuildDate>Tue, 10 Jan 2012 10:03:06 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.2</generator>
		<item>
		<title>Linux Kernel &lt; 2.6.37-rc2 ACPI custom_method Privilege Escalation</title>
		<link>http://www.goitworld.com/linux-kernel-2-6-37-rc2-acpi-custom_method-privilege-escalation/</link>
		<comments>http://www.goitworld.com/linux-kernel-2-6-37-rc2-acpi-custom_method-privilege-escalation/#comments</comments>
		<pubDate>Fri, 05 Aug 2011 03:57:03 +0000</pubDate>
		<dc:creator>jason</dc:creator>
				<category><![CDATA[Security Bulletin]]></category>
		<category><![CDATA[Escalation]]></category>
		<category><![CDATA[kernel]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[privilege]]></category>

		<guid isPermaLink="false">http://www.goitworld.com/linux-kernel-2-6-37-rc2-acpi-custom_method-privilege-escalation/</guid>
		<description><![CDATA[<p style="float: right;margin: 4px;">


</p><p>&#160;&#160; This custom_method file allows to inject custom ACPI methods into the ACPI interpreter tables. This control file was introduced with world writeable permissions in Linux Kernel 2.6.33.   </p>
<blockquote><p>/*     <br /> * american-sign-language.c      <br /> *      <br /> * Linux Kernel &#60; 2.6.37-rc2 ACPI custom_method Privilege Escalation      <br /> * Jon Oberheide &#60;jon@oberheide.org&#62;      <br /> * <a href="http://jon.oberheide.org">http://jon.oberheide.org</a>      <br /> *       <br /> * Information:      <br /> *      <br /> *&#160;&#160; <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4347">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4347</a>      <br /> *      <br /> *&#160;&#160; This custom_method file allows to inject custom ACPI methods into the ACPI      <br /> *&#160;&#160; interpreter</p></blockquote><p>&#8230; <a href="http://www.goitworld.com/linux-kernel-2-6-37-rc2-acpi-custom_method-privilege-escalation/" class="read_more">Read the rest</a></p>]]></description>
		<wfw:commentRss>http://www.goitworld.com/linux-kernel-2-6-37-rc2-acpi-custom_method-privilege-escalation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>how to resolve kernel: printk: xxx messages suppressed</title>
		<link>http://www.goitworld.com/how-to-resolve-kernel-printk-xxx-messages-suppressed/</link>
		<comments>http://www.goitworld.com/how-to-resolve-kernel-printk-xxx-messages-suppressed/#comments</comments>
		<pubDate>Tue, 06 Apr 2010 11:47:46 +0000</pubDate>
		<dc:creator>jason</dc:creator>
				<category><![CDATA[Linux/Unix Oprating system]]></category>
		<category><![CDATA[kernel]]></category>
		<category><![CDATA[printk messages]]></category>
		<category><![CDATA[suppressed]]></category>

		<guid isPermaLink="false">http://www.goitworld.com/how-to-resolve-kernel-printk-xxx-messages-suppressed/</guid>
		<description><![CDATA[<p>I find a lot of error log on my proxy server:</p>
<p>Jan 22 22:57:37 streams1 kernel: printk: 1 messages suppressed.   <br />Jan 22 23:00:04 streams1 kernel: printk: 1 messages suppressed.    <br />Jan 22 23:00:09 streams1 kernel: printk: 1 messages suppressed.    <br />Jan 22 23:00:13 streams1 kernel: printk: 3 messages suppressed.    <br />Jan 22 23:00:20 streams1 kernel: printk: 2 messages suppressed.    <br />Jan 22 23:00:25 streams1 kernel: printk: 3 messages suppressed.    <br />Jan 22 23:00:29 streams1 kernel: printk: 2 messages suppressed.    <br />Jan 22 23:00:34 streams1 kernel: printk: 2 messages suppressed.    <br />Jan 22 23:00:45 streams1 kernel: printk: 3 messages suppressed.&#8230; <a href="http://www.goitworld.com/how-to-resolve-kernel-printk-xxx-messages-suppressed/" class="read_more">Read the rest</a></p>]]></description>
		<wfw:commentRss>http://www.goitworld.com/how-to-resolve-kernel-printk-xxx-messages-suppressed/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Linux Kernel &lt; 2.6.19 udp_sendmsg Local Root Exploit</title>
		<link>http://www.goitworld.com/linux-kernel-2-6-19-udp_sendmsg-local-root-exploit/</link>
		<comments>http://www.goitworld.com/linux-kernel-2-6-19-udp_sendmsg-local-root-exploit/#comments</comments>
		<pubDate>Thu, 03 Sep 2009 05:27:12 +0000</pubDate>
		<dc:creator>jason</dc:creator>
				<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[kernel]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[local root exploit]]></category>
		<category><![CDATA[udp_sendmsg]]></category>

		<guid isPermaLink="false">http://www.goitworld.com/linux-kernel-2-6-19-udp_sendmsg-local-root-exploit/</guid>
		<description><![CDATA[<p>/***********************************************************   <br /> * hoagie_udp_sendmsg.c    <br /> * LOCAL LINUX KERNEL ROOT EXPLOIT (&#60; 2.6.19) &#8211; CVE-2009-2698    <br /> *    <br /> * udp_sendmsg bug exploit via (*output) callback function    <br /> * used in dst_entry / rtable    <br /> *    <br /> * Bug reported by Tavis Ormandy and Julien Tinnes     <br /> * of the Google Security Team    <br /> *    <br /> * Tested with Debian Etch (r0)    <br /> *    <br /> * $ cat /etc/debian_version    <br /> * 4.0    <br /> * $ uname -a    <br /> * Linux debian 2.6.18-4-686 #1 SMP Mon Mar&#8230; <a href="http://www.goitworld.com/linux-kernel-2-6-19-udp_sendmsg-local-root-exploit/" class="read_more">Read the rest</a></p>]]></description>
		<wfw:commentRss>http://www.goitworld.com/linux-kernel-2-6-19-udp_sendmsg-local-root-exploit/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Linux Kernel 2.x sock_sendpage() Local Ring0 Root Exploit</title>
		<link>http://www.goitworld.com/linux-kernel-2-x-sock_sendpage-local-ring0-root-exploit/</link>
		<comments>http://www.goitworld.com/linux-kernel-2-x-sock_sendpage-local-ring0-root-exploit/#comments</comments>
		<pubDate>Sat, 15 Aug 2009 12:46:00 +0000</pubDate>
		<dc:creator>jason</dc:creator>
				<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[kernel]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[local ring0]]></category>
		<category><![CDATA[root]]></category>

		<guid isPermaLink="false">http://www.goitworld.com/linux-kernel-2-x-sock_sendpage-local-ring0-root-exploit/</guid>
		<description><![CDATA[<p>/* dedicated to my best friend in the whole world, Robin Price   <br />&#160;&#160; the joke is in your hands </p>
<p>&#160;&#160; just too easy &#8212; some nice library functions for reuse here though </p>
<p>&#160;&#160; credits to julien tinnes/tavis ormandy for the bug </p>
<p>&#160;&#160; may want to remove the __attribute__((regparm(3))) for 2.4 kernels,   <br />&#160;&#160; I have no time to test </p>
<p>spender@www:~$ cat redhat_hehe   <br />I bet Red Hat will wish they closed the SELinux vulnerability when they    <br />were given the opportunity to.&#160; Now all RHEL boxes will get owned by    <br />leeches.c :p </p>
<p>fd7810e34e9856f77cba67f291ba115f33411ebd&#8230; <a href="http://www.goitworld.com/linux-kernel-2-x-sock_sendpage-local-ring0-root-exploit/" class="read_more">Read the rest</a></p>]]></description>
		<wfw:commentRss>http://www.goitworld.com/linux-kernel-2-x-sock_sendpage-local-ring0-root-exploit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Linux Kernel &lt;= 2.6.28.3 set_selection() UTF-8 Off By One Local Exploit</title>
		<link>http://www.goitworld.com/linux-kernel-2-6-28-3-set_selection-utf-8-off-by-one-local-exploit/</link>
		<comments>http://www.goitworld.com/linux-kernel-2-6-28-3-set_selection-utf-8-off-by-one-local-exploit/#comments</comments>
		<pubDate>Sun, 12 Jul 2009 11:11:07 +0000</pubDate>
		<dc:creator>jason</dc:creator>
				<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[kernel]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[local exploit]]></category>

		<guid isPermaLink="false">http://www.goitworld.com/linux-kernel-2-6-28-3-set_selection-utf-8-off-by-one-local-exploit/</guid>
		<description><![CDATA[<p>/* CVE-2009-1046 Virtual Console UTF-8&#160; set_selection() off-by-one(two) Memory Corruption   <br /> * Linux Kernel &#60;= 2.6.28.3     <br /> *    <br /> * coded by: sgrakkyu &#60;at&#62; antifork.org    <br /> * <a href="http://kernelbof.blogspot.com/2009/07/even-when-one-byte-matters.html">http://kernelbof.blogspot.com/2009/07/even-when-one-byte-matters.html</a>    <br /> *    <br /> * Dedicated to all people talking nonsense about non exploitability of kernel heap off-by-one overflow    <br /> *    <br /> * NOTE-1: you need a virtual console attached to the standard output (stdout)     <br /> * &#8211; physical login    <br /> * &#8211; ptrace() against some process with the same uid already attached to a VC    <br /> * &#8211; remote management ..&#8230; <a href="http://www.goitworld.com/linux-kernel-2-6-28-3-set_selection-utf-8-off-by-one-local-exploit/" class="read_more">Read the rest</a></p>]]></description>
		<wfw:commentRss>http://www.goitworld.com/linux-kernel-2-6-28-3-set_selection-utf-8-off-by-one-local-exploit/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Network Security with Linux Kernel</title>
		<link>http://www.goitworld.com/network-security-with-linux-kernel/</link>
		<comments>http://www.goitworld.com/network-security-with-linux-kernel/#comments</comments>
		<pubDate>Tue, 06 Jan 2009 13:25:07 +0000</pubDate>
		<dc:creator>jason</dc:creator>
				<category><![CDATA[Application Security]]></category>
		<category><![CDATA[kernel]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.goitworld.com/network-security-with-linux-kernel/</guid>
		<description><![CDATA[<p><font size="2">The proc filesystem offers some significant enhancements to your network security settings. Unfortunately, most of us are unaware of anything beyond the vague rumors. In the article, we&#8217;ll review some of the basic essentials of the kernel parameters necessary by altering /proc filesystem to add to the overall network security of your Linux server.</font></p>
<p><font size="2">The proc filesystem is a area of more frequently being neglected. The pseudo file structure within proc allows you to interface with the internal data structures in the kernel, either obtaining information about the system or changing specific settings.</font> </p>
<h5>IP Specific Settings</h5>
<p><font size="2">IP forwarding of</font>&#8230; <a href="http://www.goitworld.com/network-security-with-linux-kernel/" class="read_more">Read the rest</a></p>]]></description>
		<wfw:commentRss>http://www.goitworld.com/network-security-with-linux-kernel/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

