[kernel-sec-discuss] r1891 - active

Moritz Muehlenhoff jmm at alioth.debian.org
Wed Aug 4 04:03:45 UTC 2010


Author: jmm
Date: 2010-08-04 04:03:38 +0000 (Wed, 04 Aug 2010)
New Revision: 1891

Added:
   active/CVE-2010-2798
Log:
new issue


Added: active/CVE-2010-2798
===================================================================
--- active/CVE-2010-2798	                        (rev 0)
+++ active/CVE-2010-2798	2010-08-04 04:03:38 UTC (rev 1891)
@@ -0,0 +1,17 @@
+Candidate: CVE-2010-2798
+Description:
+ The problem was in the way the gfs2 directory code was trying to re-use
+ sentinel directory entries. A local, unprivileged user on a gfs2
+ mounted directory can trigger this issue, resulting in a NULL pointer
+ dereference.
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=620300
+ http://git.kernel.org/linus/71b86f562b5eb6f94ea00bba060caa64d0137969
+ http://git.kernel.org/linus/728a756b8fcd22d80e2dbba8117a8a3aafd3f203
+Notes:
+Bugs:
+upstream: released (2.6.35)
+2.6.32-upstream-stable: needed
+linux-2.6: needed
+2.6.26-lenny-security: needed
+2.6.32-squeeze-security: needed




More information about the kernel-sec-discuss mailing list