|
|
Subscribe / Log in / New account

kernel: multiple vulnerabilities

Package(s):kernel CVE #(s):CAN-2005-0400 CAN-2005-0749 CAN-2005-0750 CAN-2005-0815 CAN-2005-0839
Created:April 1, 2005 Updated:July 1, 2005
Description: More kernel vulnerabilities have been discovered including:
  • Mathieu Lafon discovered an information leak in the ext2 file system driver. (CAN-2005-0400)
  • Yichen Xie discovered a Denial of Service vulnerability in the ELF loader. (CAN-2005-0749)
  • Ilja van Sprundel discovered that the bluez_sock_create() function did not check its "protocol" argument for negative values. (CAN-2005-0750)
  • Michal Zalewski discovered that the iso9660 file system driver fails to check ranges properly in several cases. (CAN-2005-0815)
  • Previous kernels did not restrict the use of the N_MOUSE line discipline in the serial driver. (CAN-2005-0839)
Alerts:
Mandriva MDKSA-2005:110 kernel 2005-06-30
Mandriva MDKSA-2005:111 kernel-2.4 2005-06-30
Fedora-Legacy FLSA:152532 kernel 2005-06-04
Conectiva CLA-2005:952 kernel 2005-05-02
Red Hat RHSA-2005:284-01 kernel 2005-04-28
Red Hat RHSA-2005:283-01 kernel 2005-04-28
Red Hat RHSA-2005:293-01 kernel 2005-04-22
Fedora FEDORA-2005-313 kernel 2005-04-11
Trustix TSLSA-2005-0011 kernel 2005-04-05
SuSE SUSE-SA:2005:021 kernel 2005-04-04
Ubuntu USN-103-1 linux-source-2.6.8.1 2005-04-01

to post comments

kernel: multiple vulnerabilities

Posted Apr 28, 2005 13:32 UTC (Thu) by tnluker (guest, #1086) [Link]

Listing Red Hat under here is misleading, I don't see that Red Hat has fixed:

" Michal Zalewski discovered that the iso9660 file system driver fails to check ranges properly in several cases. (CAN-2005-0815)"


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds