Alert icon
We're changing our privacy policy. This stuff matters.  Learn more  Dismiss

Linux 2.6.30+ Local Kernel Exploit 0day, disabling SELinux/AppArmor/LSM ;)

Loading...

Sign in or sign up now!
40,936
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Jul 9, 2009

Hello to my new vendor-sec visitors! Haven't we learned yet that the kernel can do whatever it wants? Guess not ;)

Once I own the kernel (which SELinux does nothing to prevent), I just destroy everything (SELinux, AppArmor, LSM, auditing, and more!), in honor of the curse of Cheddar Bay! 100% reliable too BTW, you can exploit the same machine as many times as you like.

No alerts, no warnings, and this weekend it will work on x64 too.

Category:

Comedy

Tags:

License:

Standard YouTube License

  • likes, 6 dislikes

Link to this comment:

Share to:

Uploader Comments (spendergrsec)

  • uname -a: Linux localhost 2.6.29.1-server-4mnb #1 SMP Mon Apr 20 17:17:54 EDT 2009 x86_64

    ... is possible hack whit is exploit?

  • No, only 2.6.30 and 2.6.30.1 (due to the exploit being released, the issue was fixed in 2.6.30.2)

  • Actually that's Windows 7 ;)

  • AWESOME.

  • hehe thanks :) I've been watching your video too much lately ;)

see all

All Comments (22)

Sign In or Sign Up now to post a comment!
  • can you give me link ?

  • theo de raadt is better than you in every facet of life.

  • 2.6.27.10-grsec #1 SMP Wed Aug 19 00:37:38 CDT 2009 x86_64 it possible to get root on this kernel ?

  • You don't.

  • have some vulns for this kernel version

  • This is what I think your saying..

    " HURR DURR I LIEK WEB APP VULNERS ME NO NO WTF A BUFFER OVERFLOW IZ DURRR HURR "

  • I think you will only be able to take complete control of your VM.

  • Is it possible to use this for breaking out of openvz container?

  • Linux localhost 2.6.18-92.1.22.el5 #1 SMP Tue Dec 16 11:57:43 EST 2008 x86_64 x86_64 x86_64 GNU/Linux

    ... is possible hack whit is exploit?

Loading...
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more