[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250053

 
 

909

 
 

195940

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

USN-1057-1 -- linux-source-2.6.15 vulnerabilities

ID: oval:org.secpod.oval:def:700234Date: (C)2011-02-18   (M)2024-01-02
Class: PATCHFamily: unix




Dave Chinner discovered that the XFS filesystem did not correctly order inode lookups when exported by NFS. A remote attacker could exploit this to read or write disk blocks that had changed file assignment or had become unlinked, leading to a loss of privacy. Dan Rosenberg discovered that several network ioctls did not clear kernel memory correctly. A local user could exploit this to read kernel stack memory, leading to a loss of privacy. Kees Cook and Vasiliy Kulikov discovered that the shm interface did not clear kernel memory correctly. A local attacker could exploit this to read kernel stack memory, leading to a loss of privacy

Platform:
Ubuntu 6.06
Product:
linux-source-2.6.15
Reference:
USN-1057-1
CVE-2010-2943
CVE-2010-3297
CVE-2010-4072
CVE    3
CVE-2010-3297
CVE-2010-4072
CVE-2010-2943
CPE    1
cpe:/o:ubuntu:ubuntu_linux:6.06

© SecPod Technologies