Hi,
There's a local->root privilege escalation exploit in almost all
versions of the Linux kernel:
http://archives.neohapsis.com/archives/fulldisclosure/2009-08/0174.html
https://bugzilla.redhat.com/show_bug.cgi?id=516949
https://bugs.launchpad.net/fedora/+source/linux/+bug/413656
i.e. on affected kernels a local unprivileged user can become root.
Therefore I suggest that you check your distributions for the
relevant security update or else investigate the workarounds. I
have seen an updated kernel package hit Debian lenny.
If you are still on an old VPS setup where you don't have control
over your kernel then please contact support(a)bitfolk.com to get that
sorted out.
Cheers,
Andy
--
http://bitfolk.com/ -- No-nonsense VPS hosting
"Xandros's low-level support for the Eee mostly seemed to consist of a pile of
shell scripts made of cheese and failure." -- Matthew Garrett