NewsForge has more details on the recent kernel exploit that caused the owning of 4 debian project machines.
Note that the exploit has been seen "in the wild". Also note that even if you dont have any other users on your machines other than people you trust, if you use any type of clear text passwords (pop, imap, cvs, ftp, etc without TLS) then it would be TRIVIAL to sniff out a non priveleged account and then use that account to perform the escalation exploit.
Upgrade your machines, check for any binaries that have been changed and change your passwords.
Chatter
4 min 16 sec ago
2 hours 24 min ago
6 hours 9 min ago
1 day 4 hours ago
4 days 7 hours ago
4 days 10 hours ago
4 days 15 hours ago
1 week 1 day ago
1 week 3 days ago
1 week 5 days ago