blob: f9bce7deda9fe3889cbac314491ffe3e535e4214 (
plain) (
blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
|
Candidate: CVE-2006-6057
References:
http://projects.info-pull.com/mokb/MOKB-15-11-2006.html
Description:
The Linux kernel 2.6.x up to 2.6.18, and possibly other versions, on
Fedora Core 6 and possibly other operating systems, allows local
users to cause a denial of service (crash) via a malformed gfs2 file
stream that triggers a NULL pointer dereference in the init_journal
function.
Ubuntu-Description:
Notes:
<fabbione> yes we do but it's not usable
<pitti> that means you cannot create a gfs2 fs?
<fabbione> it's marked as experimental
<fabbione> you can
<fabbione> but there is no way it will last working for more than 10 seconds on load
<fabbione> it's totally buggy at design level
<fabbione> even what's in linus tree is broken
<pitti> ok, so we can treat this with low priority
gfs2 should just be disabled in edgy-security.
<dannf> etch's 2.6.18 didn't include gfs
jmm> 6c93fd1e578669364e026a0d44c669b871e2a8c4
Bugs:
upstream: released (2.6.20)
linux-2.6: released (2.6.20-1)
2.6.18-etch-security: N/A
2.6.8-sarge-security: N/A
2.4.27-sarge-security: N/A
2.6.12-breezy-security: N/A
2.6.15-dapper-security: N/A
2.6.17-edgy-security: released (2.6.17.1-11.35)
|