[kernel-sec-discuss] r1986 - active

Michael Gilbert gilbert-guest at alioth.debian.org
Sun Oct 3 21:31:19 UTC 2010


Author: gilbert-guest
Date: 2010-10-03 21:31:18 +0000 (Sun, 03 Oct 2010)
New Revision: 1986

Modified:
   active/CVE-2010-3437
Log:
info

Modified: active/CVE-2010-3437
===================================================================
--- active/CVE-2010-3437	2010-10-01 10:10:11 UTC (rev 1985)
+++ active/CVE-2010-3437	2010-10-03 21:31:18 UTC (rev 1986)
@@ -17,6 +17,8 @@
  https://bugzilla.redhat.com/show_bug.cgi?id=638085
  http://git.kernel.org/linus/252a52aa4fa22a668f019e55b3aac3ff71ec1c29
 Notes:
+ exploit: http://jon.oberheide.org/files/cve-2010-3437.c
+ only an info disclosure, but seems to be able to dump any/all kernel memory
 Bugs:
 upstream: released (2.6.36-rc6)
 2.6.32-upstream-stable: needed




More information about the kernel-sec-discuss mailing list