LWN.net Logo

Advertisement

Advanced thin client solution for Linux, based on Open Source. Mix Windows and Linux, 10 licenses for free!

Advertise here

kernel: ext3 information leak

Package(s):kernel CVE #(s):CAN-2004-0177
Created:April 21, 2004 Updated:April 26, 2004
Description: Solar Designer turned up a bug in the ext3 filesystem where blocks allocated to the journal file are not properly cleaned prior to use. This failure could expose some (random) kernel memory to an attacker, but only if that attacker can perform raw I/O to the device.
Alerts:
Debian DSA-495-1 2004-04-26
Red Hat RHSA-2004:166-01 2004-04-21
Trustix TSLSA-2004-0020 2004-04-15

(Log in to post comments)

kernel: ext3 information leak

Posted Apr 23, 2004 9:54 UTC (Fri) by angdraug (subscriber, #7487) [Link]

This vulnerability is also addressed by the Debian DSA-479 issued on April 14.

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds