Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Debian 3.1 DSA-1017-1 Critical: Kernel Denial Of Service Exploited

debian
Calendar Grey March 23, 2006
Debian Logo
Several vulnerabilities in the Debian kernel could result in denial of service or arbitrary code execution. Prompt updating is advised.
Updated package.

Summary


Multiple overflows exist in the io_edgeport driver which might be usable
as a denial of service attack vector.

CVE-2005-0124

Bryan Fulton reported a bounds checking bug in the coda_pioctl function
which may allow local users to execute arbitrary code or trigger a denial
of service attack.

CVE-2005-0449

An error in the skb_checksum_help() function from the netfilter framework
has been discovered that allows the bypass of packet filter rules or
a denial of service attack.

CVE-2005-2457

Tim Yamin discovered that insufficient input validation in the zisofs driver
for compressed ISO file systems allows a denial of service attack through
maliciously crafted ISO images.

CVE-2005-2490

A buffer overflow in the sendmsg() function allows local users to execute
arbitrary code.

CVE-2005-2555

Herbert Xu discovered that the setsockopt() function was not restricted to
users/processes with the CAP_NET_ADMIN capability. This a...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here