store | blogs | forums | twitter | facebook | wiki | mailing lists | downloads | support portal
Atomic Secure Linux
It is currently Sat May 25, 2013 3:00 am

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]




Post new topic Reply to topic Share/Bookmark  [ 2 posts ] 
Author Message
 Post subject: ASL not vulnerable to latest Linux vulnerability
Unread postPosted: Thu Sep 16, 2010 3:25 pm 
Offline
Atomicorp Staff - Site Admin
Atomicorp Staff - Site Admin
User avatar

Joined: Thu Feb 07, 2008 7:49 pm
Posts: 3249
Location: Chantilly, VA
Theres another vulnerability in the Linux kernel:

http://www.theregister.co.uk/2010/09/15 ... ssion_bug/

If you are running the latest ASL (2.2.10), then you have nothing to worry about.

In keeping with our tradition of building defense in depth in ASL, if you are running ASL with the ASL kernel you can rest easy that you are protected from the latest Linux kernel vulnerability. Long ago we built in several layers of security into the kernel that removed the attack vector this uses - so the means by which the exploit is launched won't work. But wait, theres more! If you have ASL configured to its default settings the exploit won't even run on your system. Thats because TPE (Trusted Path Execution) prevents untrusted code from being run on your system. TPE provides a broad protection against zero day exploits by preventing any untrusted code from running even if your system is vulnerable to whatever the bad guys are launching.

And last, but not least, our kernel team is working on new security features to address this whole class of vulnerabilities so that if you turn off many of the other protections in the ASL kernel you'll still be safe from these vulnerabilities.

_________________
Michael Shinn
Atomicorp - Security For Everyone

Co-Author of Troubleshooting Linux Firewalls.


Top
 Profile  
 
 Post subject: Re: ASL not vulnerable to latest Linux vulnerability
Unread postPosted: Wed Sep 22, 2010 4:39 pm 
Offline
Forum Regular
Forum Regular

Joined: Mon Mar 10, 2008 9:12 pm
Posts: 475
Location: Southampton, UK
I said it once and I'll say it again, if you run a Linux server and don't use ASL, your a fool!

Good work guys :)

_________________
Matt

"Given that God is infinite, and that the universe is also infinite... would you like a toasted teacake?"

about.me/mattauckland
twitter.com/mattauckland


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic Share/Bookmark  [ 2 posts ] 

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]


Who is online

Users browsing this forum: No registered users and 1 guest


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
cron
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group