ZeroHour
oss-securitypublished ()ingested
Part of a story covered by 7 sources: “Four 10-21-year-old Linux kernel local root flaws (DirtyAH6, TUNderflow, PPPoEject, DiagSpill) disclosed with PoC exploits; patch availability and distribution packaging limits…” — merged summary and timeline →

Re: A quartet of Linux local root vulns: DirtyAH6, PPPoEject, TUNderflow, and DiagSpill

mediumVulnerabilityimportance 45
AI summary · glm-5.3-flash

Discussion of splitting rare Linux kernel modules like PPPoE and SCTP into separate packages to reduce attack surface after four local root vulns.

A follow-up in the oss-security thread on four Linux kernel local privilege escalation vulnerabilities dubbed DirtyAH6, PPPoEject, TUNderflow, and DiagSpill. Kevin Riggle proposes packaging rarely used kernel modules such as PPPoE and SCTP separately in distributions so that most users avoid installing them, echoing Hanno's suggestion that this would meaningfully reduce attack surface. No CVE identifiers are cited in this reply.

  • Proposes separate distro packages for less-common modules like PPPoE and SCTP
  • Aims to reduce local root exposure for users not using these protocols
  • References the DirtyAH6, PPPoEject, TUNderflow, and DiagSpill vulnerabilities
VendorsLinux
ProductsLinux kernel
Full article

Posted by Kevin Riggle on Sep 18 Would it be as conceptually straightforward on the distro side as breaking most of these less-common modules out into their own packages, e.g. linux-module-pppoe, linux-module-sctp, etc? It would add an extra step of installing the kernel module for anyone who wanted to use one of these protocols, but as you say Hanno it would provide a great deal of attack surface reduction for the overwhelming majority of user who don't use these modules....

This source does not provide full text. Read it at seclists.org.