Candidate: CVE-2006-0456 References: http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=331c46591414f7f92b1cec048009abe89892ee79 Description: strnlen_user() on s390 and s390x does not return a value greater than maxlen if the string is looking at is longer than maxlen; instead it returns maxlen. Notes: jmm> 2.4 doesn't have an assembly version Bugs: upstream: released (2.6.16) linux-2.6: released (2.6.16-1) 2.6.8-sarge-security: released (2.6.8-16sarge3) 2.4.27-sarge-security: N/A 2.4.19-woody-security: N/A 2.4.18-woody-security: N/A 2.4.17-woody-security: N/A 2.4.16-woody-security: N/A 2.4.17-woody-security-hppa: N/A 2.4.17-woody-security-ia64: N/A