CENTER.HU groups
CENTER.HU address

User:

Guest

www.center.hu / Archive / Security news / may, 2005 / Linux kernel via686a, it87 driver alarm file... 

Linux kernel via686a, it87 driver alarm file...

Linux kernel via686a, it87 driver alarm file...

Date Discovered: 2005. május 2.
Date Published: 2005. május 3.
Last Updated: 2005. május 3.

Threat Assessment

Overall Risk: Medium
Impact: Medium
Popularity: Medium
Simplicity: Low

Vulnerability ID: 32864
Discovered By: Jean Delvare
Exploitable Locally: Yes
Exploitable Remotely: No
Impact: Local attackers can cause a denial of service condition.
Root Cause: Software Vulnerability

The Linux kernel contains a vulnerability that can allow a local attacker to cause a denial of service condition. The vulnerability is due to the device file alarms being created with insecure permissions. An attacker can write to the file to consume excessive CPU.

Recommendations

32864 - Linux kernel
Upgrade to 2.6.11.8 or later.

Vendor reference:

http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.11.8


Affected Technologies
Linux Kernel: Linux Kernel 2.6.0
Linux Kernel: Linux Kernel 2.6.1
Linux Kernel: Linux Kernel 2.6.1-rc1
Linux Kernel: Linux Kernel 2.6.1-rc2
Linux Kernel: Linux Kernel 2.6.10
Linux Kernel: Linux Kernel 2.6.10-rc2
Linux Kernel: Linux Kernel 2.6.11
Linux Kernel: Linux Kernel 2.6.12-rc1
Linux Kernel: Linux Kernel 2.6.2
Linux Kernel: Linux Kernel 2.6.3
Linux Kernel: Linux Kernel 2.6.4
Linux Kernel: Linux Kernel 2.6.5
Linux Kernel: Linux Kernel 2.6.6
Linux Kernel: Linux Kernel 2.6.7
Linux Kernel: Linux Kernel 2.6.8
Linux Kernel: Linux Kernel 2.6.8.1
Linux Kernel: Linux Kernel 2.6.9

Preferences
Mitre CVE: CAN-2005-1369


More information on CA Virus Information Center
http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=32864

Computer Associates – the Trusted Source of Security Knowledge


Back




Copyright © CENTER.HU Ltd, 2000-2010. All rights reserved

sitemap | privacy policy |

copyrights | new pages |

terms of purchase | contact us


PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel