Linux Kernel Vulnerability

Cluster focuses on a Linux kernel security flaw enabling potential rootkits, arbitrary code execution, and privilege escalation, with debates on exploit feasibility, mitigations like kernel patches, and comparisons to Windows protections.

➡️ Stable 0.6x Security
3,003
Comments
20
Years Active
5
Top Authors
#4563
Topic ID

Activity Over Time

2007
2
2008
1
2009
29
2010
61
2011
52
2012
88
2013
118
2014
120
2015
166
2016
229
2017
262
2018
264
2019
200
2020
166
2021
217
2022
248
2023
184
2024
361
2025
209
2026
28

Keywords

e.g TheKenThompsonHack resume.rtf KSPP GPU openwall.com ELI5 HN ycombinator.com DEP kernel exploit code vulnerabilities attack os linux kernel memory root privilege

Sample Comments

cameronbrown May 28, 2019 View on HN

Why - it's not like they're going to sneak vulnerabilities into the kernel?

gizmo686 Oct 29, 2012 View on HN

A compromised kernel does not seem that unlikely. I am not fammilar with Windows, but I assume it supports hotloading code into kernel space (like modules in linux), given this, it would be trivial to get from root in userspace to arbitrary code execution in kernel space.

dankohn1 May 3, 2017 View on HN

Informative response from Kees Cook of the Kernel Self-Protection Project (KSPP):http://www.openwall.com/lists/kernel-hardening/2017/05/02/4

DCoder Mar 2, 2014 View on HN

See a certain Linux kernel exploit: http://lwn.net/Articles/342330/

gigatexal Feb 24, 2019 View on HN

Seems like a great way to get rootkits into the Linux kernel ...

jwildeboer Aug 9, 2015 View on HN

No, they don't. In order to "exploit" this "bug" you need to be in ring 0. And if you are in ring 0 you own everything anyway. This is clickbait.

prirun Jun 23, 2016 View on HN

Or could this be an invitation to make it possible for the XXX to hack the kernel? Seems it could go either way.

benchaney Jun 29, 2017 View on HN

I was expecting a kernel vulnerability. This is really more of an exploit payload.

cryptonector Dec 22, 2022 View on HN

Wow, this is pretty awful. Willfully defeating a security feature of the kernel.

mnw21cam Jan 19, 2016 View on HN

Well, the exploit doesn't seem to work on my kernel 4.1.0 system, so that's good.