Gentoo Archives: gentoo-hardened

From: pageexec@××××××××.hu
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] problem when using 'su'
Date: Wed, 10 Jan 2007 20:45:31
Message-Id: 45A55D77.11511.4B8A116@pageexec.freemail.hu
In Reply to: [gentoo-hardened] problem when using 'su' by Matt Poletiek
1 On 9 Jan 2007 at 5:53, Matt Poletiek wrote:
2
3 > I was upgrading my kernel/patching it with grsec the other day when
4 > all of a sudden I couldnt su as a normal user anymore. I dont know how
5 > this would apply considering the new kernel wasnt (and still isnt)
6 > booted yet.
7
8 given that the logs come from grsec, you must have been already running
9 such a kernel.
10
11 > grsec: denied untrusted exec of /lib64/ld-2.4.so by /bin/su[su:31770]
12
13 check the access rights on /lib64/ld-2.4.so, they apparently violate
14 the TPE rules.
15
16 > How do these relate? What is ld-2.4.so? Whats so bad about it?
17
18 it's the 64 bit dynamic linker (part of glibc).
19
20 --
21 gentoo-hardened@g.o mailing list

Replies

Subject Author
Re: [gentoo-hardened] problem when using 'su' Matt Poletiek <chill550@×××××.com>