Candidate: CVE-2010-3865 Description: iovec overflow in rds_rdma_pages() References: http://www.spinics.net/lists/netdev/msg145359.html https://bugzilla.redhat.com/show_bug.cgi?id=647461 Notes: jmm> Introduced in 2.6.30 jmm> Given Linus's comment we should disable CONFIG_RDS for jmm> Squeeze bwh> This is probably fixed by the general fixes for CVE-2010-3859. bwh> Auto-loading will be disabled in 2.6.32-28. Bugs: upstream: released (2.6.37-rc1) [1b1f693d7ad6d193862dcb1118540a030c5e761f] 2.6.32-upstream-stable: released (2.6.32.39) [dcef84f1] linux-2.6: released (2.6.37-1) 2.6.26-lenny-security: N/A (Vulnerable code not present) 2.6.32-squeeze-security: released (2.6.32-31)