[kernel] r5021 - patch-tracking

Moritz Muehlenhoff jmm-guest at costa.debian.org
Fri Dec 16 14:02:06 UTC 2005


Author: jmm-guest
Date: Fri Dec 16 14:02:04 2005
New Revision: 5021

Added:
   patch-tracking/CVE-2005-3358
Log:
new issue: DoS through set_mempolicy()


Added: patch-tracking/CVE-2005-3358
==============================================================================
--- (empty file)
+++ patch-tracking/CVE-2005-3358	Fri Dec 16 14:02:04 2005
@@ -0,0 +1,21 @@
+Candidate: CVE-2005-3358
+References:
+ https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=175683
+Description: 
+ Linux kernel 2.6.x, possibly before 2.6.11, allows local users to
+ cause a denial of service (panic) via a set_mempolicy call with a
+ 0 bitmask, which causes a panic when a page fault occurs.
+Notes:
+ jmm> This is new to us (although already fixed since 2.6.11) and
+ jmm> different from CVE-2005-3053.
+Bugs: 
+upstream: released (2.6.11)
+2.6.14: N/A
+2.6.8-sarge-security: 
+2.4.27-sarge-security: 
+2.4.19-woody-security: 
+2.4.18-woody-security: 
+2.4.17-woody-security: 
+2.4.16-woody-security: 
+2.4.17-woody-security-hppa: 
+2.4.17-woody-security-ia64: 



More information about the Kernel-svn-changes mailing list