summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2006-6057
blob: f9bce7deda9fe3889cbac314491ffe3e535e4214 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
Candidate: CVE-2006-6057
References: 
 http://projects.info-pull.com/mokb/MOKB-15-11-2006.html
Description:
 The Linux kernel 2.6.x up to 2.6.18, and possibly other versions, on
 Fedora Core 6 and possibly other operating systems, allows local
 users to cause a denial of service (crash) via a malformed gfs2 file
 stream that triggers a NULL pointer dereference in the init_journal
 function.
Ubuntu-Description: 
Notes: 
 <fabbione> yes we do but it's not usable
 <pitti> that means you cannot create a gfs2 fs?
 <fabbione> it's marked as experimental
 <fabbione> you can
 <fabbione> but there is no way it will last working for more than 10 seconds on load
 <fabbione> it's totally buggy at design level
 <fabbione> even what's in linus tree is broken
 <pitti> ok, so we can treat this with low priority

 gfs2 should just be disabled in edgy-security.

 <dannf> etch's 2.6.18 didn't include gfs
 jmm> 6c93fd1e578669364e026a0d44c669b871e2a8c4
Bugs: 
upstream: released (2.6.20)
linux-2.6: released (2.6.20-1)
2.6.18-etch-security: N/A
2.6.8-sarge-security: N/A
2.4.27-sarge-security: N/A
2.6.12-breezy-security: N/A
2.6.15-dapper-security: N/A
2.6.17-edgy-security: released (2.6.17.1-11.35)

© 2014-2024 Faster IT GmbH | imprint | privacy policy