kernel: multiple vulnerabilities
| Package(s): | linux, linux-source-2.6.15 | CVE #(s): | CVE-2010-1148 CVE-2010-1488 | ||||||||||||||||
| Created: | June 3, 2010 | Updated: | September 23, 2010 | ||||||||||||||||
| Description: | From the Ubuntu advisory: Eugene Teo discovered that CIFS did not correctly validate arguments when creating new files. A local attacker could exploit this to crash the system, leading to a denial of service, or possibly gain root privileges if mmap_min_addr was not set. (CVE-2010-1148) Oleg Nesterov discovered that the Out-Of-Memory handler did not correctly handle certain arrangements of processes. A local attacker could exploit this to crash the system, leading to a denial of service. (CVE-2010-1488) | ||||||||||||||||||
| Alerts: |
| ||||||||||||||||||
