PRIVATE*kernel cap shellcode, (c) 2004 *PRIVATE /proc/%d/maps rt %x-%x in core 0x%08x- 0x%08x (%d) cleanup called! from %s:%d TTsharefile TTswap TTeatfiles TTeatfile TTlib thread (sleep1) (sleep1 finished) trying to mmap back the evil page %p, evil mapped (sleep2) (sleep2 finished) doing msync still doing msync finished msync, %d, errno=%d y4'r3 1uCky k1d! -i sh /bin/sh execve failed %d :( main linux kernel msync race condition bug discovered by sd, further research by sd and ***** this is development-in-progress code, redistribution prohibited! ============================================= creating fakepage TTdummyfile done fakepage done %d Kb starting aggresive write! done aggresive write! creating swapfile vmamem = %p swapmem = %p, swapsize = %d unlink started uselib uselib finished! pid %d waitpid got %d/%d