[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250038

 
 

909

 
 

195843

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-2095-1 lvm2 -- insecure communication protocol

ID: oval:org.secpod.oval:def:600012Date: (C)2011-01-28   (M)2022-10-10
Class: PATCHFamily: unix




Alasdair Kergon discovered that the cluster logical volume manager daemon in lvm2, The Linux Logical Volume Manager, does not verify client credentials upon a socket connection, which allows local users to cause a denial of service. For the stable distribution , this problem has been fixed in version 2.02.39-8 For the testing distribution , and the unstable distribution , this problem has been fixed in version 2.02.66-3 We recommend that you upgrade your lvm2 package.

Platform:
Debian 5.0
Product:
lvm2
Reference:
DSA-2095-1
CVE-2010-2526
CVE    1
CVE-2010-2526
CPE    1
cpe:/o:debian:debian_linux:5.0

© SecPod Technologies