Candidate: CVE-2009-2767 Description: Calling do_nanosleep() with clockid CLOCK_MONOTONIC_RAW can cause a NULL pointer dereference. Appears to be introduced after commit 2d42244a (v2.6.28-rc1). References: http://git.kernel.org/linus/70d715fd0597f18528f389b5ac59102263067744 http://lkml.org/lkml/2009/8/4/40 http://lkml.org/lkml/2009/8/4/28 http://lkml.org/lkml/2009/8/2/331 https://bugzilla.redhat.com/show_bug.cgi?id=515867 Ubuntu-Description: Notes: Bugs: upstream: released (2.6.31-rc6) [70d715f] linux-2.6: released (2.6.30-6) [bugfix/all/posix-timers-fix-oops-in-clock-nanosleep-with-CLOCK_MONOTONIC_RAW.patch] 2.6.18-etch-security: N/A "Appears to be introduced after commit 2d42244a (v2.6.28-rc1)" 2.6.24-etch-security: N/A "Appears to be introduced after commit 2d42244a (v2.6.28-rc1)" 2.6.26-lenny-security: N/A "Appears to be introduced after commit 2d42244a (v2.6.28-rc1)" 2.6.15-dapper-security: 2.6.22-gutsy-security: 2.6.24-hardy-security: 2.6.27-intrepid-security: