Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 418
Alerts This Week
Warning Icon 1 418

Debian 3.1 DSA-1503-2 Important: Kernel Patch Resolves Critical Issues

debian
Calendar Grey March 6, 2008
Scroller Debian
Debian releases kernel patch DSA-1503-2 to resolve numerous serious vulnerabilities alongside a bug fix. Upgrade is advised.
The package versions referenced in the initial DSA-1503 advisory introduced a regression that can cause hangs on systems that make use of the ext2 filesystem

Summary


The Common Vulnerabilities and Exposures project identifies the
following problems:

CVE-2004-2731

infamous41md reported multiple integer overflows in the Sbus PROM
driver that would allow for a DoS (Denial of Service) attack by a
local user, and possibly the execution of arbitrary code.

CVE-2006-4814

Doug Chapman discovered a potential local DoS (deadlock) in the mincore
function caused by improper lock handling.

CVE-2006-5753

Eric Sandeen provided a fix for a local memory corruption vulnerability
resulting from a misinterpretation of return values when operating on
inodes which have been marked bad.

CVE-2006-5823

LMH reported a potential local DoS which could be exploited by a malicious
user with the privileges to mount and read a corrupted cramfs filesystem.

CVE-2006-6053

LMH reported a potential local DoS which could be exploited by a malicious
user with the privileges to mount and read a corrupted ext3 filesystem.

CVE-2...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.