| Author |
Message |
tony CWH Staff
Joined: 26 Jan 2005 Posts: 39 Location: Vancouver, BC
|
Posted: Mon Feb 11, 2008 4:11 pm Post subject: EMERGENCY PATCH FOR A 0 DAY EXPLOIT. |
|
|
This patch was to address a root exploit on the new RH5 Kernel 2.6.17 - 2.6.24.1. More information here:
http://www.securityfocus.com/bid/27704/info
There were 2 servers that is running this kernel but has not been compromised:
cwh5
cpres3
We did an emergency patch on these servers this morning which took less than 30 mins. cpres3 had a little problem coming back up but it was resolved after a fsck was performed.
Many hosting companies have already reported being hacked which affected service to many customers. We seem to have adverted what could have been a very, very bad day!
Tony |
|
| Back to top |
|
 |
Forumtech
Joined: 27 Jul 2006 Posts: 3 Location: Montreal, QC
|
Posted: Tue Feb 12, 2008 9:17 am Post subject: |
|
|
Would this also cause some mbstring problems with PHP?
For some reason, I keep getting "Fatal error: Unknown function: mb_internal_encoding()" on one of my boards now. Since the string seem to be an old way for PHP to handle UTF-8 encoding, I was wondering if this is a result from the patching?
Other boards I'm running from my account dont seem to be affected. |
|
| Back to top |
|
 |
divya CWH Staff
Joined: 24 Jul 2007 Posts: 48
|
Posted: Sat Mar 01, 2008 9:32 pm Post subject: |
|
|
Hello,
We have enabled mbstring module in the server.
Regards,
Divya |
|
| Back to top |
|
 |
|