[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253928

 
 

909

 
 

198006

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2008:043 -- Mandriva kernel

ID: oval:org.secpod.oval:def:301300Date: (C)2012-01-07   (M)2023-11-09
Class: PATCHFamily: unix




A flaw in the vmsplice system call did not properly verify address arguments passed by user-space processes, which allowed local attackers to overwrite arbitrary kernel memory and gain root privileges. Mandriva urges all users to upgrade to these new kernels immediately as this flaw is being actively exploited. This issue only affects 2.6.17 and newer Linux kernels, so neither Corporate 3.0 nor Corporate 4.0 are affected

Platform:
Mandriva Linux 2007.0
Mandriva Linux 2007.1
Product:
kernel
Reference:
MDVSA-2008:043
CVE-2008-0600
CVE    1
CVE-2008-0600
CPE    2
cpe:/o:mandriva:linux:2007.1
cpe:/o:mandriva:linux:2007.0

© SecPod Technologies