[grsec] grsecurity 2.1.8 released for 2.4.32/2.6.14.6

Brad Spengler spender at grsecurity.net
Sun Jan 22 09:54:08 EST 2006


On Sun, Jan 22, 2006 at 09:32:03AM +0100, Laszlo Boszormenyi wrote:
> Hi Brad,
> 
> On Sun, 2006-01-15 at 13:35 -0500, Brad Spengler wrote:
> >     * Fixed a serious RBAC bug reported by Julien Tinnes where starting 
> >       services from an admin role, then exiting the shell, would 
> >       result in the admin role still existing on the restarted service.
> [...]
> > Since the security bug reported by Julien Tinnes is very important to 
> > RBAC users, all RBAC users are strongly urged to upgrade.
>  I would like to get this fix only for older patches. Reason: Debian
> Sarge contains 2.1.5, which need this fix as well. I think I could get
> it with (the fix is between r1.6 and r1.7 ? ):
> cvs -z3 -d :pserver:anonymous at grsecurity.net:/home/cvs rdiff -u -r 1.6
> -r 1.7 grsecurity2
> It only touches grsecurity/gracl.c , is it correct?

http://cvsweb.grsecurity.net/index.cgi/grsecurity2/grsecurity/gracl.c.diff?r2=1.6&r1=1.5&f=u

is the diff to apply.

-Brad
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://grsecurity.net/pipermail/grsecurity/attachments/20060122/9f1affb8/attachment.pgp


More information about the grsecurity mailing list