Why hasn't there been a kernel update following latest disclosure?

Oliver Grawert ogra at ubuntu.com
Wed Aug 19 07:42:03 UTC 2009


hi,
Am Dienstag, den 18.08.2009, 14:28 -0400 schrieb Robert Citek:

> 
> $ grep mmap_min_addr /etc/sysctl.conf
> vm.mmap_min_addr = 65536
> 
> $ sysctl vm.mmap_min_addr
> vm.mmap_min_addr = 65536
note that while it is the default for the system and it is true that the
vulnerability only showas up if this value is zero, there are packages
in universe (wine or dosemu for example) that set this value to zero and
make your system vulnerable. so you should test this value on any
individual system since it also depends on the additional packages
installed.

ciao
	oli
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: Dies ist ein digital signierter Nachrichtenteil
URL: <https://lists.ubuntu.com/archives/edubuntu-devel/attachments/20090819/510035a1/attachment.pgp>


More information about the edubuntu-devel mailing list