| From: |
| "Justin M. Forbes" <jmforbes@rpath.com> |
| To: |
| security-announce@lists.rpath.com, update-announce@lists.rpath.com |
| Subject: |
| rPSA-2006-0079-1 kernel |
| Date: |
| Tue, 23 May 2006 00:38:52 -0400 |
| Cc: |
| lwn@lwn.net |
rPath Security Advisory: 2006-0079-1
Published: 2006-05-23
Products: rPath Linux 1
Rating: Major
Exposure Level Classification:
Remote Deterministic Denial of Service
Updated Versions:
kernel=/conary.rpath.com@rpl:devel//1/2.6.16.18-1-0.1
References:
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-200...
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-200...
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-200...
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-200...
http://bugs.rpath.com/show_bug.cgi?id=1155
Description:
Two remote denial of service vulnerabilities have been discovered
in the Linux kernel SCTP implementation, and a remote denial of
service vulnerability has been discovered in the ip_nat_snmp_basic
module. Neither SCTP nor ip_nat_snmp_basic is configured in a
default installation of rPath Linux; a system must be explicitly
configured to use the SCTP protocol or the ip_nat_snmp_basic
netfilter module to be subject to any of these vulnerabilities.
(
Log in to post comments)