Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Debian 2.4.16 DSA 495-1 Critical: Kernel Threats And Upgrade Alert

debian
Calendar Grey April 28, 2004
Debian Logo
Critical kernel vulnerabilities require immediate updates for Debian 2.4.16 to prevent potential breaches and disruptions.
Several serious problems have been discovered in the Linux kernel

Summary

Several serious problems have been discovered in the Linux kernel.
This update takes care of Linux 2.4.16 for the ARM architecture. The
Common Vulnerabilities and Exposures project identifies the following
problems that will be fixed with this update:

CAN-2003-0127

The kernel module loader allows local users to gain root
privileges by using ptrace to attach to a child process that is
spawned by the kernel

CAN-2004-0003

A vulnerability has been discovered in the R128 drive in the Linux
kernel which could potentially lead an attacker to gain
unauthorised privileges. Alan Cox and Thomas Biege developed a
correction for this

CAN-2004-0010

Arjan van de Ven discovered a stack-based buffer overflow in the
ncp_lookup function for ncpfs in the Linux kernel, which could
lead an attacker to gain unauthorised privileges. Petr Vandrovec
developed a correction for this.

CAN-2004-0109

zen-parse discovered a buffer overflow vulnerability in the
ISO9660 filesystem ...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: kernel-source-2.4.16 kernel-patch-2.4.16-arm kernel-image-2.4.16-lart kernel-image-2.4.16-netwinder kernel-image-2.4.16-riscpc
CVE ID: CAN-2003-0127 CAN-2004-0003 CAN-2004-0010 CAN-2004-0109 CAN-2004-0177 CAN-2004-0178

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here