LWN.net Logo

kernel: multiple vulnerabilities

Package(s):kernel kernel-pae CVE #(s):CVE-2010-2226 CVE-2010-2537 CVE-2010-2538 CVE-2010-2798
Created:August 13, 2010 Updated:March 3, 2011
Description:

From the Pardus advisory:

CVE-2010-2226: A flaw was found in the handling of the SWAPEXT IOCTL in the Linux kernel XFS file system implementation. A local user could use this flaw to read write-only files, that they do not own, on an XFS file system. This could lead to unintended information disclosure.

CVE-2010-2537: The BTRFS_IOC_CLONE and BTRFS_IOC_CLONE_RANGE ioctls should check whether the donor file is append-only before writing to it.

CVE-2010-2538: The BTRFS_IOC_CLONE_RANGE ioctl appears to have an integer overflow that allows a user to specify an out-of-bounds range to copy from the source file (if off + len wraps around).

CVE-2010-2798: The problem was in the way the gfs2 directory code was trying to re-use sentinel directory entries. A local, unprivileged user on a gfs2 mounted directory can trigger this issue, resulting in a NULL pointer dereference.

Alerts:
Ubuntu USN-1083-1 2011-03-03
Ubuntu USN-1074-2 2011-02-28
Ubuntu USN-1074-1 2011-02-25
SUSE SUSE-SA:2011:007 2011-02-07
Ubuntu USN-1041-1 2011-01-10
MeeGo MeeGo-SA-10:38 2010-10-09
SUSE SUSE-SA:2010:060 2010-12-14
SUSE SUSE-SA:2010:052 2010-11-03
openSUSE openSUSE-SU-test-2010:36579-1 2010-11-03
openSUSE openSUSE-SU-2010:0895-2 2010-11-03
SUSE openSUSE-SU-2010:0895-1 2010-10-27
openSUSE openSUSE-SU-2010:0664-1 2010-09-23
Mandriva MDVSA-2010:188 2010-09-23
SUSE SUSE-SA:2010:040 2010-09-13
SUSE SUSE-SA:2010:039 2010-09-08
openSUSE openSUSE-SU-2010:0592-1 2010-09-08
Red Hat RHSA-2010:0670-01 2010-09-02
Red Hat RHSA-2010:0660-01 2010-08-30
Fedora FEDORA-2010-13110 2010-08-20
Fedora FEDORA-2010-13058 2010-08-20
Ubuntu USN-1000-1 2010-10-19
Mandriva MDVSA-2010:198 2010-10-07
Debian DSA-2094-1 2010-08-19
Pardus 2010-112 2010-08-12
CentOS CESA-2010:0723 2010-09-30
Red Hat RHSA-2010:0723-01 2010-09-29
openSUSE openSUSE-SU-2013:0927-1 2013-06-10

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds