Alerts This Week
Warning Icon 1 566
Alerts This Week
Warning Icon 1 566

Debian 3.1 DSA-1503-2 Important: Kernel Patch Resolves Critical Issues

debian
Calendar Grey March 6, 2008
Debian Logo
Debian releases kernel patch DSA-1503-2 to resolve numerous serious vulnerabilities alongside a bug fix. Upgrade is advised.
The package versions referenced in the initial DSA-1503 advisory introduced a regression that can cause hangs on systems that make use of the ext2 filesystem

Summary


The Common Vulnerabilities and Exposures project identifies the
following problems:

CVE-2004-2731

infamous41md reported multiple integer overflows in the Sbus PROM
driver that would allow for a DoS (Denial of Service) attack by a
local user, and possibly the execution of arbitrary code.

CVE-2006-4814

Doug Chapman discovered a potential local DoS (deadlock) in the mincore
function caused by improper lock handling.

CVE-2006-5753

Eric Sandeen provided a fix for a local memory corruption vulnerability
resulting from a misinterpretation of return values when operating on
inodes which have been marked bad.

CVE-2006-5823

LMH reported a potential local DoS which could be exploited by a malicious
user with the privileges to mount and read a corrupted cramfs filesystem.

CVE-2006-6053

LMH reported a potential local DoS which could be exploited by a malicious
user with the privileges to mount and read a corrupted ext3 filesystem.

CVE-2...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here