Gentoo Archives: gentoo-hardened

From: "Anthony G. Basile" <blueness@g.o>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] Disappearing root on 2.6.36-hardened-r6 upgrade
Date: Sun, 26 Dec 2010 18:05:25
Message-Id: 4D177C09.6090700@gentoo.org
In Reply to: Re: [gentoo-hardened] Disappearing root on 2.6.36-hardened-r6 upgrade by pageexec@freemail.hu
1 On 12/26/2010 03:46 AM, pageexec@××××××××.hu wrote:
2 > On 26 Dec 2010 at 1:59, Michael Orlitzky wrote:
3 >
4 >> I've got (at least) two servers that lose their root partition after
5 >> this upgrade. One of them has an HP cciss SCSI RAID controller; the
6 >> other has a single IDE hard drive. Assuming the problem is something
7 >> common, I'll stick to describing the one with the array for now.
8 >
9 > which grsec is this ebuild based on? my guess is that it's a recent PaX/UDEREF
10 > hardening that's causing this and should be mostly fixed now except for the
11 > IP checksum code fix which i'll release soon. in the meantime you can disable
12 > UDEREF. if you don't have it enabled then i don't know what it is, we'll need
13 > more debugging, let me know.
14 >
15
16 I'll repeat what I said in the bug report here
17 (See https://bugs.gentoo.org/show_bug.cgi?id=349705)
18
19 hardened-sources-2.6.32-r31 has grsecurity-2.2.1-2.6.32.27-201012121726
20
21 hardened-sources-2.6.36-r6 has grsecurity-2.2.1-2.6.36.2-201012121726
22
23
24 What's even stranger is that I have six HP Proliant DL 385 G7, all with
25 the following (partial) fstab:
26
27 /dev/cciss/c0d0p1 /boot ext2 noauto,noatime 1 2
28 /dev/cciss/c0d0p3 / ext4 noatime 0 1
29 /dev/cciss/c0d0p2 none swap sw 0 0
30
31 None of which showed a panic.
32
33
34 --
35 Anthony G. Basile, Ph.D.
36 Gentoo Developer