Alert icon
We're changing our privacy policy. This stuff matters.  Learn more  Dismiss

Mr Magorium's Wunderbar Emporium

Loading...

Sign in or sign up now!
12,932
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Aug 11, 2009

*watch in HD fullscreen*

Exploits the vulnerability in all Linux kernels since 2001. Exploit works on all kernels since 2001. Disables SELinux, AppArmor, LSM -- you know the drill.

I had planned for this exploit to be more interactive, involving a simulated russian roulette (hence the video) where there would be a 1 in 6 chance of instead of the box being compromised, it would hot reboot into FreeDOS.
Unfortunately I lack the time needed to realize this dream.

The video displayed is embedded in the exploit binary and extracted/played at runtime.

Exploit (for a possibly false-negative test of vulnerability of your own machine) is at http://grsecurity.net/~spender/wunderbar_emporium.tgz

Category:

Comedy

Tags:

License:

Standard YouTube License

  • likes, 2 dislikes

Link to this comment:

Share to:

Uploader Comments (spendergrsec)

  • It doesn't work on my 2.6.22.1, which I compiled myself: [+] MAPPED ZERO PAGE!

    unable to find a vulnerable domain, sorry

    On kernel from Debian distribution it works. I don't know where exactly is the difference.

  • The reason for the difference is that you removed all the vulnerable modules (or built in code) by compiling your own kernel with just the things you needed. It's a good idea in general to reduce your attack surface, and in this case it paid off for you.

  • hm... does this exploits disable also tomoyo (on < 2.6.30 kernels)?

  • Yes, the LSM disabling is enough to disable tomoyo.

  • Click "more info" at the top right for a link to the exploit for testing vulnerability of your own machine. I forgot to link to it in the FD/DD mail.

  • what movie is that?

  • 13 Tzameti, check it out, not too bad (just don't watch the trailer) or actually, I may have already ruined the movie for you (that's how I felt after watching the trailer for it at least :P)

see all

All Comments (14)

Sign In or Sign Up now to post a comment!
  • I get the same message on a 2.6.26-2-amd64  Debian GNU/Linux 5.0

    Is there a workaround?

  • Spender I'm trying on default 2.6.28-15-generic kernel but seams it wont work. The output ends with: UNABLE TO MAP ZERO PAGE!

  • lol

  • PWN3D! \o/

  • thx spender

    :)

Loading...

0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more