LWN.net Logo

kernel: multiple vulnerabilities

Package(s):kernel CVE #(s):CVE-2010-2960 CVE-2010-2962 CVE-2010-3079 CVE-2010-3310
Created:October 13, 2010 Updated:May 10, 2011
Description: From the SUSE advisory:

CVE-2010-2960: local users could crash the system by causing a NULL deref in the keyctl_session_to_parent() function

CVE-2010-2962: local users could write to any kernel memory location via the i915 GEM ioctl interface

CVE-2010-3079: local users could crash the system by causing a NULL deref in ftrace

CVE-2010-3310: local users could corrupt kernel heap memory via ROSE sockets

Alerts:
Ubuntu USN-1093-1 2011-03-25
Mandriva MDVSA-2011:051 2011-03-18
Ubuntu USN-1083-1 2011-03-03
Ubuntu USN-1074-2 2011-02-28
Ubuntu USN-1119-1 2011-04-20
Ubuntu USN-1074-1 2011-02-25
Mandriva MDVSA-2011:029 2011-02-17
SUSE SUSE-SA:2011:008 2011-02-11
SUSE SUSE-SA:2011:007 2011-02-07
Ubuntu USN-1041-1 2011-01-10
MeeGo MeeGo-SA-10:38 2010-10-09
Fedora FEDORA-2010-18983 2010-12-17
SUSE SUSE-SA:2010:060 2010-12-14
Red Hat RHSA-2010:0958-01 2010-12-08
Fedora FEDORA-2010-18432 2010-12-02
Debian DSA-2126-1 2010-11-26
Red Hat RHSA-2010:0842-01 2010-11-10
SUSE SUSE-SA:2010:052 2010-11-03
openSUSE openSUSE-SU-test-2010:36579-1 2010-11-03
openSUSE openSUSE-SU-2010:0895-2 2010-11-03
SUSE openSUSE-SU-2010:0895-1 2010-10-27
openSUSE openSUSE-SU-2010:0738-1 2010-10-18
openSUSE openSUSE-SU-2010:0734-1 2010-10-18
openSUSE openSUSE-SU-2010:0720-1 2010-10-13
Ubuntu USN-1000-1 2010-10-19
SUSE SUSE-SA:2010:051 2010-10-15
SUSE SUSE-SA:2010:050 2010-10-13
Oracle ELSA-2012-2001 2012-01-25
Oracle ELSA-2012-2001 2012-01-25

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds