[Leaplist] major bug found in Linux to give root access tountrusted users...

Jason Boxman jasonb at edseek.com
Tue Nov 10 17:04:15 EST 2009


On Thursday 05 November 2009 04:42:59 pm Edward Guldemond wrote:
> http://wiki.debian.org/mmap_min_addr has a list of affected software,
> as well as an explanation about the tunable.  dosemu and qemu are also
> affected if you don't want to run them as root.

And fyi, it appears the wine deb packages explicitly install a sysctl file that 
ensures mmap_min_addr is 0 at boot.

Setting kernel variables (/etc/sysctl.d/wine.sysctl.conf)... 

# Wine needs to access the bottom 64k of memory in order to launch
# 16 bit programs.
vm.mmap_min_addr = 0

Probably safe to change it > 0 if you don't use 16-bit apps, then.

Now, to see if Sierra Pharoh from 1999 runs!

-- 

"Don't put it in your mouth." - Arctic Silver 5 Manual



-- 
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.



More information about the Leaplist mailing list