RE: How To Find If Your Kernel Is Vuln To Public Local Root Exploitation 02-22-2014, 02:42 AM
#11
(02-22-2014, 02:34 AM)tropic Wrote: I disagree. RHEL/Centos boxes use backported kernels. A skid who is unaware of this will run an exploit for '2.6.32' without taking in regard the date when the particular kernel was compiled. This is why pasting the unames of backported kernels to ksplice inspector is futile.
A backported kernel may not be vulnerable to some of the newer exploits, conversely, it may also contain a vulnerability which has been patched in other kernelsdue to neglect (refer to CVE-2010-3081 and CVE: 2010-3081) .
Yes but the point of this tutorial is not to get someone to actually root the kernel they found, but to instead get the person used to using CLI in shells rather than just uploading and browsing files. If someone is able to actually root who is reading this tutorial, then what's the point? I'm quite sure that if someone knows how to root a kernel, they will know how to find if the kernel is actually vulnerable.
This tutorial is nothing more than giving people something new to do with shells or connectbacks. You are right though, I should add something in to cover this.














![[Image: F4Z9Dqw.png]](https://i.imgur.com/F4Z9Dqw.png)
![[+]](https://sinister.ly/images/modern/collapse_collapsed.png)













