LWN.net Logo

Scientific Linux alert SL-kern-20130312 (kernel)

From:  Pat Riehecky <riehecky@fnal.gov>
To:  <SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV>
Subject:  Security ERRATA Important: kernel on SL5.x i386/x86_64
Date:  Tue, 12 Mar 2013 10:19:37 -0500
Message-ID:  <513F4789.303@fnal.gov>
Archive-link:  Article, Thread

Synopsis: Important: kernel security update Issue Date: 2013-03-11 CVE Numbers: CVE-2013-0871 CVE-2013-0268 -- This update fixes the following security issues: * A flaw was found in the way file permission checks for the "/dev/cpu/[x]/msr" files were performed in restricted root environments (for example, when using a capability-based security model). A local user with the ability to write to these files could use this flaw to escalate their privileges to kernel level, for example, by writing to the SYSENTER_EIP_MSR register. (CVE-2013-0268, Important) * A race condition was found in the way the Linux kernel's ptrace implementation handled PTRACE_SETREGS requests when the debuggee was woken due to a SIGKILL signal instead of being stopped. A local, unprivileged user could use this flaw to escalate their privileges. (CVE-2013-0871, Important) The system must be rebooted for this update to take effect. -- SL5 x86_64 kernel-2.6.18-348.3.1.el5.x86_64.rpm kernel-debug-2.6.18-348.3.1.el5.x86_64.rpm kernel-debug-debuginfo-2.6.18-348.3.1.el5.x86_64.rpm kernel-debug-devel-2.6.18-348.3.1.el5.x86_64.rpm kernel-debuginfo-2.6.18-348.3.1.el5.x86_64.rpm kernel-debuginfo-common-2.6.18-348.3.1.el5.x86_64.rpm kernel-devel-2.6.18-348.3.1.el5.x86_64.rpm kernel-headers-2.6.18-348.3.1.el5.x86_64.rpm kernel-xen-2.6.18-348.3.1.el5.x86_64.rpm kernel-xen-debuginfo-2.6.18-348.3.1.el5.x86_64.rpm kernel-xen-devel-2.6.18-348.3.1.el5.x86_64.rpm i386 kernel-2.6.18-348.3.1.el5.i686.rpm kernel-PAE-2.6.18-348.3.1.el5.i686.rpm kernel-PAE-debuginfo-2.6.18-348.3.1.el5.i686.rpm kernel-PAE-devel-2.6.18-348.3.1.el5.i686.rpm kernel-debug-2.6.18-348.3.1.el5.i686.rpm kernel-debug-debuginfo-2.6.18-348.3.1.el5.i686.rpm kernel-debug-devel-2.6.18-348.3.1.el5.i686.rpm kernel-debuginfo-2.6.18-348.3.1.el5.i686.rpm kernel-debuginfo-common-2.6.18-348.3.1.el5.i686.rpm kernel-devel-2.6.18-348.3.1.el5.i686.rpm kernel-headers-2.6.18-348.3.1.el5.i386.rpm kernel-xen-2.6.18-348.3.1.el5.i686.rpm kernel-xen-debuginfo-2.6.18-348.3.1.el5.i686.rpm kernel-xen-devel-2.6.18-348.3.1.el5.i686.rpm noarch kernel-doc-2.6.18-348.3.1.el5.noarch.rpm - Scientific Linux Development Team


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds