Solved

Debian Kernel Vulnerability

Posted on 2003-12-02
10
493 Views
Last Modified: 2010-04-22
I'm running Debian 2.4.18.  I've read there is a vulnerability in the kernel.  Where do I get a fix for this?
0
Comment
Question by:Gnustome
  • 4
  • 3
  • 2
  • +1
10 Comments
 
LVL 24

Expert Comment

by:shivsa
Comment Utility
0
 
LVL 24

Assisted Solution

by:shivsa
shivsa earned 100 total points
Comment Utility
ftp://ftp.us.debian.org/debian/pool/main/k/kernel-source-2.4.20/kernel-source-2.4.20_2.4.20-3woody.3_all.deb

unpack the kernel sources in
/usr/src/kernel-source-2.4.20 and cd-ing there:

# cp /boot/config-2.4.20 .config
# make-kpkg binary --bzimage --initrd

and then dpkg -i the resulting kernel-image deb in /usr/src --
this was for 386.
------------------------------------------

Just do "apt-cache search kernel-image" at the command line. Soon it
will appear a list of available kernel-images pre-compiled. Choose that
best fit to your system and do, as a root, "apt-get install <the name of
the image you chose.

-------------------------------------------------


0
 
LVL 2

Expert Comment

by:joele23
Comment Utility
0
 
LVL 2

Expert Comment

by:joele23
Comment Utility
sorry I messed up the cut and paste heres the file link again

File: http://www.packetstormsecurity.nl/linux-2.25-ow1.tar.gz
0
 
LVL 2

Expert Comment

by:joele23
Comment Utility
0
Maximize Your Threat Intelligence Reporting

Reporting is one of the most important and least talked about aspects of a world-class threat intelligence program. Here’s how to do it right.

 
LVL 2

Assisted Solution

by:joele23
joele23 earned 100 total points
Comment Utility
and again

http://www.packetstormsecurity.nl/linux/security/linux-2.2.25-ow1.tar.gz

thats it I promise

reminder to self 'do not try to multi-task to much when youve been up for 20 hours'
0
 

Author Comment

by:Gnustome
Comment Utility
shivsa, I executed:
apt-cache search kernel-image

I don't know which of the following to use, since I installed bf2.4 on 386 architecture that uses an AMD K6-II:

kernel-image-2.4.18-k6
kernel-headers-2.4.18-bf2.4
kernel-image-2.4.18-1-386
kernel-image-2.4.18-1-k6
kernel-image-2.4.18-bf2.4
0
 
LVL 1

Accepted Solution

by:
MKrauss earned 300 total points
Comment Utility
2.4.18 is not that bad, with 2.4.19 there came the ptrace isssue and with 2.4.20 or 21 had
the iptables problem and 2.4.22 has a userspace/security prob which is going back to 2.4.18 .
If you're not having external (inet) traffic to this host and its your private host then i would
leave it. If not then you MUST go to 2.4.23 !

For fixing the best is downloading the kernel image from kernel.org .

Here a short description on howto (no danger ....) :
-get the packages: fakeroot,ncurses-dev,automake,kernel-package .
-untar the new kernel image somewhere on your disk
-ln -s /somewhere/image /usr/src/linux
-cd /usr/src/linux
-cp /boot/config2.4 ??? /usr/src/linux/.config (hide it with the dot !)
-make oldconfig
-make menuconfig (optional for changing the config)
-make dep clean bzImage (watch for "exit" errors do not continiue when they occure)
-make modules bzlilo modules_install ( "             "               "          ")
-modify lilo.conf to your belongings and reboot
-when restartet you check with dmesg for you current version.

those steps are not just any pasted links, its a common working procedure.
... have fun

MK



0
 
LVL 24

Expert Comment

by:shivsa
Comment Utility
u can use these 2.
kernel-headers-2.4.18-bf2.4
kernel-image-2.4.18-bf2.4.

i think the servers are not upto sync and new images are not posted for apt-cache. then u might wanna go to website and load the image from there.

whatever easy/convenient for u.

apt-cache is really good because this does all the job for u, search and install.
0
 

Author Comment

by:Gnustome
Comment Utility
My Linux partition has direct connection to the internet through a router.  I hope I'm not being redundant, MK, but does your post dated 12/5/03 explain how to change from 2.4.18 to 2.4.23?
0

Featured Post

Windows Server 2016: All you need to know

Learn about Hyper-V features that increase functionality and usability of Microsoft Windows Server 2016. Also, throughout this eBook, you’ll find some basic PowerShell examples that will help you leverage the scripts in your environments!

Join & Write a Comment

​Being a Managed Services Provider (MSP) has presented you  with challenges in the past— and by meeting those challenges you’ve reaped the rewards of success.  In 2014, challenges and rewards remain; but as the Internet and business environment evol…
Hello EE, Today we will learn how to send all your network traffic through Tor which is useful to get around censorship and being tracked all together to a certain degree. This article assumes you will be using Linux, have a minimal knowledge of …
This video discusses moving either the default database or any database to a new volume.
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now