[kernel] r4959 - patch-tracking

Moritz Muehlenhoff jmm-guest at costa.debian.org
Fri Dec 2 23:58:34 UTC 2005


Author: jmm-guest
Date: Fri Dec  2 23:58:34 2005
New Revision: 4959

Added:
   patch-tracking/CVE-2005-1265
Log:
dos vulnerability through overlapping mmap() regions


Added: patch-tracking/CVE-2005-1265
==============================================================================
--- (empty file)
+++ patch-tracking/CVE-2005-1265	Fri Dec  2 23:58:34 2005
@@ -0,0 +1,20 @@
+Candidate: CVE-2005-1265
+References: http://www.ubuntulinux.org/support/documentation/usn/usn-137-1
+Description: 
+ The mmap function in the Linux Kernel 2.6.10 can be used to create memory
+ maps with a start address beyond the end address, which allows local users
+ to cause a denial of service (kernel crash)
+Notes: 
+ jmm> I've pulled the patch by Linus from the above-mentioned Ubuntu advisory
+
+Bugs: 
+upstream: 
+2.6.14: 
+2.6.8-sarge-security: 
+2.4.27-sarge-security: 
+2.4.19-woody-security: 
+2.4.18-woody-security: 
+2.4.17-woody-security: 
+2.4.16-woody-security: 
+2.4.17-woody-security-hppa: 
+2.4.17-woody-security-ia64: 



More information about the Kernel-svn-changes mailing list