[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2017-0323 -- Oracle kernel_oracleasm_ocfs2

ID: oval:org.secpod.oval:def:1501781Date: (C)2017-02-27   (M)2024-04-17
Class: PATCHFamily: unix




The dccp_rcv_state_process function in net/dccp/input.c in the Linux kernel mishandles DCCP_PKT_REQUEST packet data structures in the LISTEN state, which allows local users to obtain root privileges or cause a denial of service (double free) via an application that makes an IPV6_RECVPKTINFO setsockopt system call.

Platform:
Oracle Linux 5
Product:
kernel
oracleasm
oracleasm_pae
oracleasm_xen
oracleasm_debug
ocfs2
ocfs2_pae
ocfs2_xen
ocfs2_debug
Reference:
ELSA-2017-0323
CVE-2017-6074
CVE-2017-2634
CVE    2
CVE-2017-2634
CVE-2017-6074
CPE    10
cpe:/a:oracle:ocfs2_xen
cpe:/a:oracle:oracleasm_pae
cpe:/a:oracle:ocfs2_debug
cpe:/a:oracle:ocfs2_pae
...

© SecPod Technologies