#priv

@efnet

Thursday, January 26, 2012

Suid /proc/PID/mem Write (CVE-2012-0056) & multiple vulnerabilities in Wordpress >3.3.1



this should speak for itself

http://blog.zx2c4.com/749

here is the fix commit: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=e268337dfe26dfc7efd422a804dbb27977a3cccc

also, Wordpress setup-config.php (install page). There are a couple of different ways to utilize this not mentioned in the following post.

http://threatpost.com/en_us/blogs/multiple-bugs-haunt-wordpress-setup-012512

+++

Travis Goodspeed's presentation on 802.11 Wifi Packet-in-Packet attacks.

http://events.ccc.de/congress/2011/Fahrplan/events/4766.en.html

Sudo 1.8.0 - 1.8.3p1 Format String Vuln

Critical PHP remote vulnerability introduced in fix for php hashtable collision dos  with PoC here: https://gist.github.com/1725489
builder at 1:35 PM 4 comments:
‹
›
Home
View web version
Powered by Blogger.