Control Web Panel

WebPanel => Apache => Topic started by: bullten on January 15, 2018, 09:15:43 PM

Title: Protect Your Server Against Symlink Attack
Post by: bullten on January 15, 2018, 09:15:43 PM
Hello,

Cloudlinux released kernel based patch for free to protect server against symlink attack

https://www.cloudlinux.com/kernelcare-blog/entry/symlink-protection-patchset-centos-6-7-kernelcare

[root@localhost ~]# kcarectl --info
kpatch-state: patch is applied
kpatch-for: Linux version 3.10.0-514.el7.x86_64 (builder@kbuilder.dev.centos.org) (gcc version 4.8.5 20150623 (Red Hat 4.8.5-11) (GCC) ) #1 SMP Tue Nov 22 16:42:41 UTC 2016
kpatch-build-time: Fri Dec  8 11:14:03 2017
kpatch-description: 223-free;
Title: Re: Protect Your Server Against Symlink Attack
Post by: 24x7servermanagement on January 17, 2018, 06:49:03 AM
Yes, this patch is available since the last couple of months.  ;D