Kernel space: The vmsplice() Exploit | Linux Today

Kernel space: The vmsplice() Exploit

Written By
JC
Jonathan Corbet
Feb 20, 2008

“As this is being written, distributors are working quickly to
ship kernel updates fixing the local root vulnerabilities in the
vmsplice() system call. Unlike a number of other recent
vulnerabilities which have required special situations (such as the
presence of specific hardware) to exploit, these vulnerabilities
are trivially exploited and the code to do so is circulating on the
net. The author found himself wondering how such a wide hole could
find its way into the core kernel code, so he set himself the task
of figuring out just what was going on – a task which took rather
longer than he had expected.

“The splice() system call, remember, is a mechanism for creating
data flow plumbing within the kernel…”

Complete
Story

JC

Jonathan Corbet

Linux Today Logo

LinuxToday is a trusted, contributor-driven news resource supporting all types of Linux users. Our thriving international community engages with us through social media and frequent content contributions aimed at solving problems ranging from personal computing to enterprise-level IT operations. LinuxToday serves as a home for a community that struggles to find comparable information elsewhere on the web.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.