Go Back   Review Linux OS Forums > Review Linux OS Forums Info > News

Reply
Old 04-23-2008, 05:11 PM   #1
Administrator
Administrator
 
Join Date: Jul 2005
Posts: 7,374
Blog Entries: 16
Post Ksplice automates applying security patches to Linux kernel — with no reboot

Ksplice is an interesting open source project out of MIT that automates the process of applying security patches to the Linux kernel without rebooting the system, and it’s getting notice by the Linux Foundation.


Top kernel developer and Linux Foundation fellow Ted Ts’o said the Ksplice software is much needed by telecommunications providers and anyone who hates downtime. “It allows you to hot patch the Linux kernel with a security update without rebooting the computer. It’s a binary patch capability that is highly automated,” said T’so. “Users in the carrier grade linux space have been clamoring for this for a while. If you are a carrier in telephony and don’t want downtime, this stuff is pure gold.”


The best part? It doesn’t require any kernel modifications, Ts’o said.


According to a technical paper released by Ksplice developer Jeffrey Brian Arnold of MIT, Kspliace was tested against Linux security patches from May of 2005 to December of 2007 and automatically (and successfully) patched 84 percent of 50 “significant kernel vulnerabilities” in that timeframe. Ksplice can handle many security updates but not changes to data structures, the report notes.


It is available under GPL 2 and has been tested on Linux kernel versions from 2.6.8 to the recently released 2.6.25 and on several Linux distributions including Debian, Ubuntu, Red Hat Enterprise Linux and Gentoo, Arnold writes.


Ts’o does not know if the developer has any commercial plans around Ksplice but notes that the software is free and ready to go. Arnold does point out in his white paper, however, that the software is still in test mode and can cause problems in some systems. He also acknowledges that Ksplice could theoretically help “bad guys” introduce bad code into the kernel but maintains those folks already have the tools to do harm.




[details]
 Administrator is offline Status: Offline

 
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are Off
Pingbacks are Off
Refbacks are Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Ksplice, Rebootless Linux Kernel Security Updates Administrator News 0 04-25-2008 03:49 PM
Mozilla patches critical Firefox flaws (InfoWorld) Administrator News 0 02-08-2008 11:25 AM
Core Driver Patches in the 2.6.25 Merge Window Administrator News 0 01-30-2008 12:39 PM
Reboot Linux box after a kernel panic Administrator News 0 11-19-2007 10:02 AM
Mozilla Patches 12 Firefox Flaws (TechWeb) Administrator News 0 06-09-2006 10:34 PM


All times are GMT -7. The time now is 12:39 PM.

 
         


Design by: vBulletin Skins Zone
Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.2.0