Candidate: CVE-2007-0772 References: CONFIRM:http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.20.1 FRSIRT:ADV-2007-0660 URL:http://www.frsirt.com/english/advisories/2007/0660 SECUNIA:24215 URL:http://secunia.com/advisories/24215 Description: The Linux kernel before 2.6.20.1 allows remote attackers to cause a denial of service (oops) via a crafed NFSACL 2 ACCESS request that triggers a free of an incorrect pointer. Ubuntu-Description: Notes: dannf> sarge doesn't have the affected source file Bugs: upstream: released (2.6.20.1) linux-2.6: released (2.6.18.dfsg.1-11) [bugfix/nfs-acl-free-wrong-pointer.patch] 2.6.18-etch-security: released (2.6.18.dfsg.1-11) [bugfix/nfs-acl-free-wrong-pointer.patch] 2.6.8-sarge-security: N/A 2.4.27-sarge-security: N/A 2.6.15-dapper-security: released (2.6.15-28.53) 2.6.17-edgy-security: released (2.6.17.1-11.37)