Nytro Posted March 19, 2013 Report Posted March 19, 2013 [h=1]Google Chrome OS Linux WAS Exploited at Pwnium 2013 for $40,000[/h]By Sean Michael Kerner | March 18, 2013From the 'Linux Kernel Exploit' files: Earlier this month, Google Chrome running Chrome OS (Linux!) was hailed as being a survivor in the Pwnium/Pwn2own event that hacked IE, Firefox and Chrome browsers on Windows. Apple's Safari running on Mac OS X was not hacked and neither (apparently) was Chrome on Chrome OS. Google disclosed this morning that Chrome on Chrome OS had in fact been exploited - albeit, unreliably. The same researcher that took Google's money last year for exploiting Chrome, known publicly only as 'PinkiePie' was awarded $40,000 for exploiting Chrome/Chrome OS via a Linux kernel bug, config file error and a video parsing flaw. Google has already fixed the flaws in ChromeOS 25.0.1364.173, BUT seeing as this is a Linux kernel flaw, i'm very curious if this affect any/all other Linux distros. As is typical for Google, they offer very little in the way of full-disclosure or detail on the flaw fixed. All that Google publicly has posted now is: [181083] High CVE-2013-0915: Overflow in the GPU process. Credit to Pinkie Pie. [chromium-os:39733] High CVE-2013-0913: Time-of-Check/Time-of-Use and counting overflows in i915 driver. Credit to Pinkie Pie. Neither of those issues is specifically identified as a 'Linux kernel' issue. Google has also not publicly opened up those CVE's so it's not possible to see the exact bug (which possibly could be with the kernel). As Google is a responsible firm, I'd suspect/hope that the bug has been submitted upstream, though right now it's not superclear to me where that is.. In any event, it's a chained bug and not something that was a reliable exploit, but still...would/will be good to see it eliminated from the mainline Linux kernel sooner rather than later.Sursa: Google Chrome OS Linux WAS Exploited at Pwnium 2013 for $40,000 - InternetNews. Quote
awnly3jhc2g Posted March 19, 2013 Report Posted March 19, 2013 faina stirea, dar nu mai merg siteurile : https://code.google.com/p/chromium/issues/detail?id=181083https://code.google.com/p/chromium-os/issues/detail?id=39733 Quote
Nytro Posted March 19, 2013 Author Report Posted March 19, 2013 Da, nici de pe nist.gov nu merg, sunt aceleasi, probabil sterse de Google.E interesanta asta: National Vulnerability Database (NVD) National Vulnerability Database (CVE-2013-0913) , kernel 3.8.Iar cealalta, ceva mai multe detalii: http://www.scip.ch/en/?vuldb.8021 Quote