<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" >
<channel>
<title>Registration Weakness in Linux Kernel's Binary formats (Poluting sys_execve)</title>
<link>http://goodfellas.shellcode.com.ar/binfmt.xml</link>
<description>Weakness found in the handling of simply linked lists used to register binary formats handled by Linux kernel, and affects all the kernel families (2.0/2.2/2.4/2.6). That's demostrated using root privileges with a POC project, and you could patch preventive using the patches exposed in that document.</description>
<language>en</language>
<copyright>(c) SHELLCODE IT Solutions &amp; Security Research</copyright>
<lastBuildDate>2007-01-20 19:55:32.855444</lastBuildDate>

<item><title>Document (english)</title>
<link>http://goodfellas.shellcode.com.ar/own/binfmt-en.pdf</link>
<description>The detail document publicated</description>
<author>goodfellas</author>
<pubDate>2006-11-20 19:55:26.806838</pubDate>
<category>document</category>
</item>

<item><title>Document (Spanish)</title>
<link>http://goodfellas.shellcode.com.ar/own/binfmt-es.pdf</link>
<description>The detailed document published</description>
<author>goodfellas</author>
<pubDate>2006-11-20 19:55:26.806838</pubDate>
<category>document</category>
</item>

<item><title>Presentation (English)</title>
<link>http://goodfellas.shellcode.com.ar/own/binfmt-en.ppt</link>
<description>Presentation made in H2HC</description>
<author>GoodFellas</author>
<pubDate>2006-11-20 19:55:26.806838</pubDate>
<category>presentation</category>
</item>

<item><title>Proof of concept</title>
<link>http://goodfellas.shellcode.com.ar/src/binfmt/</link>
<description>The proof of concept source</description>
<author>goodfellas</author>
<pubDate>2007-01-20 19:55:26.806838</pubDate>
<category>source</category>
</item>

</channel>
</rss>
