Comment Re:Is Slashdot advertising now? (Score 1) 488
because it is ?
AND... if the summary is right (won't bother reading TFA), it's a _LOCAL_ exploit. which means, if you don't run telnetd, have all system accounts locked and have a strong passwords on your user's account, even if you have sshd running it shouldn't be a big deal.
now, if:
- you have a webserver;
- it allows uploads OR allows users's code to create files on
- whatever temp dir the webserver uses allows execution (i.e. doesn't have "noexec" on
- your PHP/phyton/ruby whatever is not configured to deny execution of system commands;
then you DESERVE to be rooted, just so you can learn how to properly secure your server the next time;
disclaimer: yeah, this is how i learned.