|
|||||||||||
|
Re: ping22: can not kill this process
From: Mike Wang <comritesecurity(at)gmail.com>
Date: Tue Jan 01 2008 - 21:46:28 EST
thanks. > I checked the apache using debsums seems ok.
shopping:/usr/sbin# debsums apache2-mpm-prefork
/usr/sbin/apache2
How can I check a process being stack-overflowed or not? > IMHO, I'd declare this box as "compromised" and redo the whole thing. will do. I had tripwire turned on before, it seems quite slow. so I turned it off. > great links. > Yah, it is a after the fact action. but I have those parameters for SELinux, some lib/apps need that. which may not safe,
allow_execstack --> on
allow_execmem --> on
allow_execmod --> off
allow_execheap --> off
if the allow_execstack was off and the application was stack
over-flowed, will over-flowed code be constrained by SELinux?
-- Best Regards Mike -- To UNSUBSCRIBE, email to debian-security-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.orgReceived on Tue Jan 1 21:47:06 2008 This archive was generated by hypermail 2.1.8 : Wed Mar 19 2008 - 06:54:51 EDT |
||||||||||
|
|||||||||||