Linux Articles

Friday, September 24, 2010

Linux Server with 64bit Kernel Contain Exploit Vulnerability Which Might Gives Hackers a Back Door to Your Box

Recently different Linux Distribution including CentOS, RedHat, Ubuntu, Debian and other popular distribution for 64bit server contain high-profile vulnerability on Kernel which might give Hackers a Back Door to take control of the server. Specially if the machine is a online and sheared by others is in high rick.

Users of 64-bit distributions of Linux need to patch to prevent attacks using an aggressively exploited flaw.

Most of Operating System vendor is aware about this vulnerability and working to issue a patch / fix.

See the RedHat Security Team's work plan on this URL: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-3081

As this vulnerability is directly related to Operating System's Core 'Kernel', it might take longer time to fix as the Kernel Security Team is also working on it.

If you are running a 64bit Machine, you must have to keep an eye on your box to see if there is anything wired happening on box and also keep track on your vendor's website to get the status of issuing patch or advice.

As this vulnerability is related to 64bit machine, most Linux user don't need to be worry about it.  But to be safe, check again that your system is not 64 bit.

To see more information check the URL bellow:

http://www.itworld.com/open-source/121392/linux-kernel-exploit-gives-hackers-a-back-door

http://forums.cpanel.net/f185/x86_64-kernel-exploit-165758.html#post692222

https://www.ksplice.com/uptrack/cve-2010-3081.ssi.xhtml

http://linux.slashdot.org/article.pl?sid=10/09/20/0217204

Hope to post update on the issue cve-2010-3081 here, as soon I get any info.

Regards
Noor Ahamed Bauani
Freelance ICT Consultant from Bangladesh
Expert on Complex IPv4 & IPv6 Internet Routing
http://www.bauani.org/

Wednesday, September 22, 2010

Understand Routing and Convert Your Linux Box as a Powerful Router | Inside Bauani's Mind

I found some Router Setup Information on a website which I found very user friendly. You can access this Router Setup on a Linux Box Here, Though it is too Old, but still Interesting as basic routing system hasn't change since above article wrote.

The article started with the paragraph bellow:


If you are unfamiliar with how networking routing is done, you should read The CTDP Networking Guide. This section contains some information contained in that guide. Information about how routers and routing works is included in The CTDP Networking Guide, but that information is not included in this section. This section only explains how to set up routing and routing tables.

Mean, the article is not for newbies, but it describe in very easy language. If you have knowledge on basic computer programing and know a little about Routing (Packet Transmission on Computer Network), you will easily convert a Linux box to a basic router. Writer of article made it easy to understand using the House Number, Street Address, Town or City and the Outside the City by calling every packet of Computer Network Data Transmission Packet. This is a good idea to make people understand how a router works. See a few of example bellow from his article:


In everyday terms this is similar to a basic decision process. Imagine you are holding a letter. If it is addressed to you, you keep it, if it is addressed to someone in your town, you drop it in the local slot at the post office, but if it is addressed to someone out of town, you would drop it in the out of town slot.

I have a wish to expand this article with more easy example so that a very new person who is newcomer on Packet Switching Network can understand how basic network works. A lot of friend of mine requested me to explain the routing system of a Computer Network (Either Internet or a Intranet, which called Local Area Network or LAN). If anyone can understand how a computer talk with each other, I believe he/she can easily understand the basic routing system, what is gateway, why a gateway is used in network etc.

From the article above, I got inspired to write an article for those who asked me to write one. At this moment, I am working with another project but adding this to my 'to do' list so that I can write the article as soon as possible. I used few of quote from that article as I don't belive 'Bookmarking' as it vanished too earlier.

Anyway, at this moment, I am very much busy with my IPv6 Project and Other Online Project which will allow people to use some useful network utilities for free. But I must write an article on basic routing system (At least Data Packet Routing on Ethernet Network).

Don't forget to knock first then punch me if I forget to return here;)

--
Regards
Noor Ahamed Bauani
Chief Technology Advisor
Dhaka Wireless
An IPv6 Ready ISP in Bangladesh, Need an IPv6 Connectivity? Just Knock us!
HP: +880-1818-BAUANI (SMS Only, No Direct Call Please)

Understand Routing and Convert Your Linux Box as a Powerful Router