[Secure-testing-team] Re: Bug#322237: kernel-image-2.6.8-11-amd64-k8-smp: [PATCH] Panic on ipt_recent - 32bitism

Horms horms at debian.org
Thu Aug 11 08:40:59 UTC 2005


tag 322237 +security
tag 322237 +patch
tag 322237 +pending
tag 322237 +sarge
thanks

On Wed, Aug 10, 2005 at 01:38:57PM +0200, Frederik Schueler wrote:
> Hello,
> 
> On Tue, Aug 09, 2005 at 04:31:40PM -0500, Chad Walstrom wrote:
> 
> > While using the ipt_recent kernel module to stop SSH bruteforce attacks,
> > the kernel panics on a 32-bitism.  This crash can occur at any time.

By my reasoning that constitutes a remote DoS.

> This is fixed in 2.6.12, the git commit entry is here:
> 
> http://www.kernel.org/git/?p=linux/kernel/git/chrisw/lsm-2.6.git;a=commit;h=bcfff0b471a60df350338bcd727fc9b8a6aa54b2
> 
> this is a good candidate to be backported for sarge.

Thanks, applies cleanly to 2.6.8 and 2.4.27.
Will be in SVN very shortly.

-- 
Horms




More information about the Secure-testing-team mailing list