summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2006-4814
diff options
context:
space:
mode:
authorMoritz Muehlenhoff <jmm@debian.org>2008-02-22 21:53:05 +0000
committerMoritz Muehlenhoff <jmm@debian.org>2008-02-22 21:53:05 +0000
commit0394957db79db8afcae11908388c24464b8d744f (patch)
tree8f82b84cda898d89f438bc4c4e7b00e8d0324b60 /retired/CVE-2006-4814
parent60e5f903d389fc77fb16d492f07f52e65c20be16 (diff)
retire some issues
git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@1140 e094ebfe-e918-0410-adfb-c712417f3574
Diffstat (limited to 'retired/CVE-2006-4814')
-rw-r--r--retired/CVE-2006-481421
1 files changed, 21 insertions, 0 deletions
diff --git a/retired/CVE-2006-4814 b/retired/CVE-2006-4814
new file mode 100644
index 00000000..93d4ae2a
--- /dev/null
+++ b/retired/CVE-2006-4814
@@ -0,0 +1,21 @@
+Candidate: CVE-2006-4814
+References:
+ http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2f77d107050abc14bc393b34bdb7b91cf670c250
+Description:
+ The mincore function in the Linux kernel before 2.4.33.6 does not
+ properly lock access to user space, which has unspecified impact and
+ attack vectors, possibly related to a deadlock.
+Ubuntu-Description:
+ Doug Chapman discovered an improper lock handling in the mincore()
+ function. A local attacker could exploit this to cause an eternal
+ hang in the kernel, rendering the machine unusable.
+Notes:
+Bugs:
+upstream: released (2.6.20-rc2), released (2.4.34-rc3)
+linux-2.6: released (2.6.18.dfsg.1-9)
+2.6.18-etch-security: released (2.6.18.dfsg.1-9)
+2.6.8-sarge-security: released (2.6.8-16sarge7) [mincore_hang.dpatch, mincore-fixes.dpatch]
+2.4.27-sarge-security: released (2.4.27-10sarge6) [239_mincore-hang.diff]
+2.6.12-breezy-security: released (2.6.12-10.43)
+2.6.15-dapper-security: released (2.6.15-28.51)
+2.6.17-edgy-security: released (2.6.17.1-11.35)

© 2014-2024 Faster IT GmbH | imprint | privacy policy