Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 528
Alerts This Week
Warning Icon 1 528

Debian 2.4.x Critical Kernel Update Unauthorized Access DSA-480-1

debian
Calendar Grey April 14, 2004
Scroller Debian
Multiple kernel flaws in Debian require critical updates to protect system reliability and prevent unauthorized access.
This is three advisories in one, each for the same group of kernel 2.4.x vulnerabilities

Summary

Several serious problems have been discovered in the Linux kernel.
This update takes care of Linux 2.4.17 and 2.4.18 for the hppa
(PA-RISC) architecture. The Common Vulnerabilities and Exposures
project identifies the following problems that will be fixed with this
update:

CAN-2004-0003

A vulnerability has been discovered in the R128 drive in the Linux
kernel which could potentially lead an attacker to gain
unauthorised privileges. Alan Cox and Thomas Biege developed a
correction for this

CAN-2004-0010

Arjan van de Ven discovered a stack-based buffer overflow in the
ncp_lookup function for ncpfs in the Linux kernel, which could
lead an attacker to gain unauthorised privileges. Petr Vandrovec
developed a correction for this.

CAN-2004-0109

zen-parse discovered a buffer overflow vulnerability in the
ISO9660 filesystem component of Linux kernel which could be abused
by an attacker to gain unauthorised root access. Sebastian
Krahmer and Ernie Petrides dev...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: kernel-image-2.4.17-hppa kernel-image-2.4.18-hppa
CVE ID: CAN-2004-0003 CAN-2004-0010 CAN-2004-0109 CAN-2004-0177 CAN-2004-0178

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.