[kernel-sec-discuss] r609 - active

Martin Pitt mpitt at costa.debian.org
Tue Oct 10 10:05:02 UTC 2006


Author: mpitt
Date: 2006-10-10 10:05:01 +0000 (Tue, 10 Oct 2006)
New Revision: 609

Added:
   active/CVE-2006-3741
Log:
new issue: CVE-2006-3741

Added: active/CVE-2006-3741
===================================================================
--- active/CVE-2006-3741	                        (rev 0)
+++ active/CVE-2006-3741	2006-10-10 10:05:01 UTC (rev 609)
@@ -0,0 +1,19 @@
+Candidate: CVE-2006-3741
+References:
+ http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=b8444d00762703e1b6146fce12ce2684885f8bf6
+Description: 
+ The perfmonctl system call (sys_perfmonctl) in Linux kernel 2.4.x and
+ 2.6 before 2.6.18, when running on Itanium systems, does not properly
+ track the reference count for file descriptors, which allows local
+ users to cause a denial of service (file descriptor consumption).
+Ubuntu-Description:
+Notes:
+Bugs: 
+upstream: 
+linux-2.6:
+2.6.8-sarge-security: needed
+2.4.27-sarge-security: needed
+2.6.10-hoary-security: ignored
+2.6.12-breezy-security: ignored
+2.6.15-dapper-security: ignored
+2.6.17-edgy: needed




More information about the kernel-sec-discuss mailing list