summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2009-1961
diff options
context:
space:
mode:
authorMoritz Muehlenhoff <jmm@debian.org>2009-10-21 17:15:58 +0000
committerMoritz Muehlenhoff <jmm@debian.org>2009-10-21 17:15:58 +0000
commit94b78328a2fbd9c6566e544cc49464671d42001a (patch)
tree1b92684f7d56a06a268e5881709078c6ec581cc9 /retired/CVE-2009-1961
parentb249e20c89e173fff61e474dd649059d739c7180 (diff)
retire more issues
git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@1537 e094ebfe-e918-0410-adfb-c712417f3574
Diffstat (limited to 'retired/CVE-2009-1961')
-rw-r--r--retired/CVE-2009-196129
1 files changed, 29 insertions, 0 deletions
diff --git a/retired/CVE-2009-1961 b/retired/CVE-2009-1961
new file mode 100644
index 00000000..5cafd979
--- /dev/null
+++ b/retired/CVE-2009-1961
@@ -0,0 +1,29 @@
+Candidate: CVE-2009-1961
+Description:
+ The inode double locking code in fs/ocfs2/file.c in the Linux kernel
+ 2.6.30 before 2.6.30-rc3, 2.6.27 before 2.6.27.24, 2.6.29 before 2.6.29.4,
+ and possibly other versions down to 2.6.19 allows local users to cause a
+ denial of service (prevention of file creation and removal) via a series
+ of splice system calls that trigger a deadlock between the
+ generic_file_splice_write, splice_from_pipe, and ocfs2_file_splice_write
+ functions.
+References:
+ http://www.openwall.com/lists/oss-security/2009/05/29/2
+ http://www.openwall.com/lists/oss-security/2009/05/30/1
+ http://www.openwall.com/lists/oss-security/2009/06/02/2
+ http://www.openwall.com/lists/oss-security/2009/06/03/1
+ http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=7bfac9ecf0585962fe13584f5cf526d8c8e76f17
+Ubuntu-Description:
+Notes:
+Bugs:
+upstream: released (2.6.30-rc1) [7bfac9ecf0585962fe13584f5cf526d8c8e76f17]
+linux-2.6: released (2.6.30-1)
+2.6.18-etch-security: N/A "affected code note present"
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.8etch2) [bugfix/all/ocfs2-splice-deadlock.patch]
+2.6.26-lenny-security: released (2.6.26-16) [bugfix/all/ocfs2-splice-deadlock.patch]
+2.6.15-dapper-security:
+2.6.22-gutsy-security:
+2.6.24-hardy-security:
+2.6.27-intrepid-security:
+
+

© 2014-2024 Faster IT GmbH | imprint | privacy policy