[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SA:2009:004 -- SUSE kernel local privilege escalation

ID: oval:org.secpod.oval:def:400061Date: (C)2012-01-31   (M)2024-02-19
Class: PATCHFamily: unix




The openSUSE 10.3 kernel was updated to fix various security problems and bugs. Following security bugs were fixed: CVE-2008-5079: net/atm/svc.c in the ATM subsystem allowed local users to cause a denial of service by making two calls to svc_listen for the same socket, and then reading a /proc/net/atm/*vc file, related to corruption of the vcc table. CVE-2008-5029: The __scm_destroy function in net/core/scm.c makes indirect recursive calls to itself through calls to the fput function, which allows local users to cause a denial of service via vectors related to sending an SCM_RIGHTS message through a UNIX domain socket and closing file descriptors. CVE-2008-5134: Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan.c in the libertas subsystem allowed remote attackers to have an unknown impact via an &qt invalid beacon/probe response. &qt CVE-2008-4933: Buffer overflow in the hfsplus_find_cat function in fs/hfsplus/catalog.c allowed attackers to cause a denial of service via an hfsplus filesystem image with an invalid catalog namelength field, related to the hfsplus_cat_build_key_uni function. CVE-2008-5025: Stack-based buffer overflow in the hfs_cat_find_brec function in fs/hfs/catalog.c allowed attackers to cause a denial of service via an hfs filesystem image with an invalid catalog namelength field, a related issue to CVE-2008-4933. CVE-2008-5182: The inotify functionality might allow local users to gain privileges via unknown vectors related to race conditions in inotify watch removal and umount.

Platform:
openSUSE 10.3
Product:
kernel
Reference:
SUSE-SA:2009:004
CVE-2008-4933
CVE-2008-5025
CVE-2008-5029
CVE-2008-5079
CVE-2008-5134
CVE-2008-5182
CVE    6
CVE-2008-5079
CVE-2008-5134
CVE-2008-5025
CVE-2008-5029
...
CPE    1
cpe:/o:opensuse:opensuse:10.3

© SecPod Technologies