Full Disclosure mailing list archives

Workaround for Ac1db1tch3z exploit.


From: Terje Malmedal <terje.malmedal () usit uio no>
Date: Thu, 16 Sep 2010 14:58:57 +0200


If you do not actually need to run any 32bits binaries on x86_64 you can
do: 

echo ':32bits:M:0:\x7fELF\x01::/bin/echo:' > /proc/sys/fs/binfmt_misc/register

This will make the kernel run /bin/echo filename instead of executing
the file whenever it sees a 32bit ELF binary.

Of course if you actually *need* to run some 32bits binaries this will
not help you. 

-- 
 - Terje
malmedal () usit uio no

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: