[kernel-sec-discuss] r602 - active

Martin Pitt mpitt at costa.debian.org
Wed Sep 27 12:36:53 UTC 2006


Author: mpitt
Date: 2006-09-27 12:36:17 +0000 (Wed, 27 Sep 2006)
New Revision: 602

Added:
   active/CVE-2006-4997
Log:
add CVE-2006-4997

Added: active/CVE-2006-4997
===================================================================
--- active/CVE-2006-4997	                        (rev 0)
+++ active/CVE-2006-4997	2006-09-27 12:36:17 UTC (rev 602)
@@ -0,0 +1,20 @@
+Candidate: CVE-2006-4997
+References:
+ http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=fe26109a9dfd9327fdbe630fc819e1b7450986b2
+Description: 
+ IP over ATM clip_mkip dereference freed pointer
+Ubuntu-Description:
+ ADLab Venustech Info Ltd discovered that the ATM network driver
+ referenced an already released pointer in some circumstances. By
+ sending specially crafted packets to a host over ATM, a remote
+ attacker could exploit this to crash that host.
+Notes: 
+Bugs: 
+upstream: 
+linux-2.6:
+2.6.8-sarge-security: needed
+2.4.27-sarge-security: needed
+2.6.10-hoary-security: needed
+2.6.12-breezy-security: needed
+2.6.15-dapper-security: needed
+2.6.17-edgy: needed




More information about the kernel-sec-discuss mailing list