Language Selection

English French German Italian Portuguese Spanish

A Tale of Two Root Exploits, and Why We Shouldn't Panic

Filed under
Security

There's no denying Linux is more secure than perpetually-patching Windows, but the past month or so has not provided an ideal demonstration.

In August, we saw the arrival of a long-overdue fix for a kernel bug that was six years old; now, in the last week or so, it's been not one but two root exploits causing a fuss.

"Running 64-bit Linux? Haven't updated yet? You're probably being rooted as I type this," was the introduction on Slashdot to CVE-2010-3081, the second such vulnerability to come to light in recent days.

Preceding it by just a few of those days, of course, was CVE-2010-3301, which had actually been discovered and fixed back in 2007 before the patch was inexplicably removed again the very next year, reintroducing the vulnerability.

Put it all together, and you'll see why more than a few Linux bloggers have been scratching their heads about security.

A Matter of Size?




More in Tux Machines

Red Hat Enterprise Linux 7.1 Officially Released with Support for Linux Containers

Red Hat was proud to announce earlier today, March 5, the availability of the first maintenance release of its Red Hat Enterprise Linux 7 operating system for computers, used in numerous enterprises worldwide. Red Hat Enterprise Linux 7.1 contains a great amount of bug fixes and improvements over the previous release, as well as various new features. Read more Also: iSER target should work fine in RHEL 7.1

Help: Linux to the rescue of older operating systems

As you know, when someone offers free stuff, we give it a few weeks in order to give each group, organization or individual in need a chance to respond. That’s what we’ll do with Mary Greenfield’s generous offer to donate free fabric, so give it another week and then we’ll forward responses to her. One of the most rewarding aspects of writing this column is realizing that it generates discussion, and here’s a response to that question about updates for an older computer running Windows ME... Read more

Open source used to manage Figueres’ environment

The Spanish town of Figueres is relying on free and open source software to help manage its urban and natural environment. Fisersa Ecoserveis, an environmental company, is using a range of open source solutions to create, update and manage interactive geographic maps, used for monitoring and planning the city’s green spaces. Read more

I/O-rich SBC runs Linux on Cortex-A9 Sitara SoC

MYIR launched a “Rico” SBC for TI’s Cortex-A9 AM437x SoC, with an open Linux BSP, 4GB of eMMC flash, and coastline GbE, HDMI, and USB host and device ports. Read more