[Secure-testing-team] Bug#544756: linux-image-2.6.26-2-686: Kernel still vulnerable by dsa-1862

Christoph Siess chs at geekhost.info
Wed Sep 2 18:45:20 UTC 2009


Package: linux-image-2.6.26-2-686
Version: 2.6.26-17lenny2
Severity: critical
Tags: security
Justification: root security hole


Hi,

according to http://www.debian.org/security/2009/dsa-1862 this Version of the 2.6.26-2 Kernel should 
not be vulnerable to CVE-2009-2692.
Unfortunately I'm still able to break my system:
chs at server:~$ gcc exploit.c -o exploit
chs at server:~$ ./exploit
sh-3.2# id
uid=0(root) gid=0(root) groups=115(wheel),1000(chs)

I got the exploit from http://www.risesecurity.org/exploits/linux-sendpage.c

Correct my if I got something wrong, but according to my understanding this shouldn't be possible 
with version 2.6.26-17lenny2.


regards,
Christoph Siess
-- Package-specific info:
** Version:
Linux version 2.6.26-2-686 (Debian 2.6.26-17lenny1) (dannf at debian.org) (gcc version 4.1.3 20080704 (prerelease) (Debian 4.1.2-25)) #1 SMP Sun Jul 26 21:25:33 UTC 2009

** Command line:
auto BOOT_IMAGE=Standardkernel ro root=902

** Tainted: G D (128)

** Kernel log:
[    4.392639] raid1: raid set md1 active with 2 out of 2 mirrors
[    4.440919] md: bind<sdb1>
[    4.441162] md: bind<sda1>
[    4.453869] raid1: raid set md0 active with 2 out of 2 mirrors
[    4.569076] device-mapper: uevent: version 1.0.3
[    4.569839] device-mapper: ioctl: 4.13.0-ioctl (2007-10-18) initialised: dm-devel at redhat.com
[    4.710503] kjournald starting.  Commit interval 5 seconds
[    4.710570] EXT3-fs: mounted filesystem with ordered data mode.
[    6.096023] udevd version 125 started
[    6.723961] Linux agpgart interface v0.103
[    6.732652] agpgart: Detected AGP bridge 0
[    6.736548] agpgart: AGP aperture is 128M @ 0xe8000000
[    6.930466] input: Power Button (FF) as /class/input/input1
[    6.956346] ACPI: Power Button (FF) [PWRF]
[    6.956458] input: Power Button (CM) as /class/input/input2
[    6.990298] ACPI: Power Button (CM) [PWRB]
[    7.195482] pci_hotplug: PCI Hot Plug PCI Core version: 0.5
[    7.201614] shpchp: Standard Hot Plug PCI Controller Driver version: 0.4
[    7.802580] input: PC Speaker as /class/input/input3
[    7.808578] Error: Driver 'pcspkr' is already registered, aborting...
[    7.980620] parport_pc 00:0b: reported by Plug and Play ACPI
[    7.980731] parport0: PC-style at 0x378, irq 7 [PCSPP]
[    8.537383] Adding 4200888k swap on /dev/md0.  Priority:-1 extents:1 across:4200888k
[    8.572363] EXT3 FS on md2, internal journal
[    9.341152] loop: module loaded
[    9.434061] md: md5 stopped.
[    9.434236] md: md4 stopped.
[   10.157164] kjournald starting.  Commit interval 5 seconds
[   10.166578] EXT3 FS on md1, internal journal
[   10.166578] EXT3-fs: mounted filesystem with ordered data mode.
[   10.189392] kjournald starting.  Commit interval 5 seconds
[   10.246160] EXT3 FS on dm-0, internal journal
[   10.246160] EXT3-fs: mounted filesystem with ordered data mode.
[   10.296703] kjournald starting.  Commit interval 5 seconds
[   10.300344] EXT3 FS on dm-1, internal journal
[   10.300441] EXT3-fs: mounted filesystem with ordered data mode.
[   11.960656] NET: Registered protocol family 10
[   11.961204] lo: Disabled Privacy Extensions
[   12.062284] r8169: eth1: link up
[   12.514199] r8169: eth0: link up
[   13.526856] RPC: Registered udp transport module.
[   13.526927] RPC: Registered tcp transport module.
[   13.682438] Installing knfsd (copyright (C) 1996 okir at monad.swb.de).
[   14.918450] OCFS2 Node Manager 1.5.0
[   14.925701] OCFS2 DLM 1.5.0
[   14.925701] ocfs2: Registered cluster interface o2cb
[   14.941711] OCFS2 DLMFS 1.5.0
[   14.942425] OCFS2 User DLM kernel interface loaded
[   22.808015] eth1: no IPv6 routers present
[   23.460010] eth0: no IPv6 routers present
[   28.964019] IPVS: Registered protocols (TCP, UDP, AH, ESP)
[   28.964019] IPVS: Connection hash table configured (size=4096, memory=32Kbytes)
[   28.964019] IPVS: ipvs loaded.
[   29.016651] IPVS: [wrr] scheduler registered.
[   30.018284] Loading iSCSI transport class v2.0-869.
[   30.086996] iscsi: registered transport (tcp)
[   30.392917] iscsi: registered transport (iser)
[   34.715139] warning: `ntpd' uses 32-bit capabilities (legacy support in use)
[   45.746869] ip_tables: (C) 2000-2006 Netfilter Core Team
[  352.366693] Bluetooth: Core ver 2.11
[  352.369727] NET: Registered protocol family 31
[  352.369789] Bluetooth: HCI device and connection manager initialized
[  352.369849] Bluetooth: HCI socket layer initialized
[  352.400930] Bluetooth: L2CAP ver 2.9
[  352.400992] Bluetooth: L2CAP socket layer initialized
[  377.416156] general protection fault: 0000 [#1] SMP 
[  377.416298] Modules linked in: l2cap bluetooth xt_multiport iptable_filter ip_tables x_tables ib_iser rdma_cm ib_cm iw_cm ib_sa ib_mad ib_core ib_addr iscsi_tcp libiscsi scsi_transport_iscsi ip_vs_wrr ip_vs ocfs2_dlmfs ocfs2_stack_o2cb ocfs2_dlm ocfs2_nodemanager ocfs2_stackglue configfs nfsd auth_rpcgss exportfs nfs lockd nfs_acl sunrpc ipv6 loop parport_pc parport pcspkr snd_pcm snd_timer snd soundcore snd_page_alloc k8temp i2c_viapro i2c_core shpchp pci_hotplug button amd64_agp agpgart evdev dm_mirror dm_log dm_snapshot dm_mod ide_pci_generic floppy ehci_hcd uhci_hcd usbcore via82cxxx ata_generic r8169 sd_mod thermal processor fan thermal_sys amd74xx ide_core sata_nv sata_sil sata_via libata dock 3w_9xxx 3w_xxxx scsi_mod raid1 raid0 md_mod reiserfs xfs ext3 jbd mbcache
[  377.420006] 
[  377.420006] Pid: 7355, comm: foo Not tainted (2.6.26-2-686 #1)
[  377.420006] EIP: 0060:[<08048634>] EFLAGS: 00010206 CPU: 0
[  377.420006] EIP is at 0x8048634
[  377.420006] EAX: ffffffff EBX: f8e5b8a0 ECX: 00000000 EDX: c1361e60
[  377.420006] ESI: ecee8540 EDI: f7c92438 EBP: c422de40 ESP: c422de0c
[  377.420006]  DS: 007b ES: 007b FS: 00d8 GS: 0033 SS: 0068
[  377.420006] Process foo (pid: 7355, ti=c422c000 task=e7b5f200 task.ti=c422c000)
[  377.420006] Stack: f7968eb8 00000000 f7968eb8 e95c5e3c f882676b 00000000 c422d000 ffffffff 
[  377.420006]        c422de0c c3c2c800 f8e5b8a0 ecee8540 f7c92438 dd48e9c0 c024e66a 00001000 
[  377.420006]        00000000 c02d7de0 c422dea4 c018d4b3 00001000 c422de68 00000000 00000000 
[  377.420006] Call Trace:
[  377.420006]  [<f882676b>] do_get_write_access+0x2f8/0x331 [jbd]
[  377.420006]  [<c024e66a>] sock_sendpage+0x31/0x36
[  377.420006]  [<c018d4b3>] pipe_to_sendpage+0x4f/0x59
[  377.420006]  [<c018d9d7>] __splice_from_pipe+0x48/0x18c
[  377.420006]  [<c018d464>] pipe_to_sendpage+0x0/0x59
[  377.420006]  [<c018dd97>] splice_from_pipe+0x81/0xa2
[  377.420006]  [<c018ddca>] generic_splice_sendpage+0x12/0x16
[  377.420006]  [<c018d464>] pipe_to_sendpage+0x0/0x59
[  377.420006]  [<c018d564>] do_splice_from+0x4f/0x5d
[  377.420006]  [<c018d586>] direct_splice_actor+0x14/0x18
[  377.420006]  [<c018d767>] splice_direct_to_actor+0xc9/0x16e
[  377.420006]  [<c018d572>] direct_splice_actor+0x0/0x18
[  377.420006]  [<c018d856>] do_splice_direct+0x4a/0x67
[  377.420006]  [<c0174530>] do_sendfile+0x18d/0x24c
[  377.420006]  [<c01746e2>] sys_sendfile+0x71/0x7f
[  377.420006]  [<c01158cc>] do_page_fault+0x0/0x5b8
[  377.420006]  [<c0103853>] sysenter_past_esp+0x78/0xb1
[  377.420006]  =======================
[  377.420006] Code:  Bad EIP value.
[  377.420006] EIP: [<08048634>] 0x8048634 SS:ESP 0068:c422de0c
[  377.424108] ---[ end trace a3860fa289f945bd ]---

** Loaded modules:
Module                  Size  Used by
l2cap                  17248  0 
bluetooth              44868  1 l2cap
xt_multiport            2816  1 
iptable_filter          2624  1 
ip_tables              10160  1 iptable_filter
x_tables               13284  2 xt_multiport,ip_tables
ib_iser                25940  0 
rdma_cm                23648  1 ib_iser
ib_cm                  29100  1 rdma_cm
iw_cm                   7492  1 rdma_cm
ib_sa                  16840  2 rdma_cm,ib_cm
ib_mad                 30616  2 ib_cm,ib_sa
ib_core                46048  6 ib_iser,rdma_cm,ib_cm,iw_cm,ib_sa,ib_mad
ib_addr                 5540  1 rdma_cm
iscsi_tcp              14948  0 
libiscsi               23712  2 ib_iser,iscsi_tcp
scsi_transport_iscsi    25112  4 ib_iser,iscsi_tcp,libiscsi
ip_vs_wrr               2336  1 
ip_vs                  63424  3 ip_vs_wrr
ocfs2_dlmfs            16872  1 
ocfs2_stack_o2cb        4064  0 
ocfs2_dlm             171044  2 ocfs2_dlmfs,ocfs2_stack_o2cb
ocfs2_nodemanager     139560  3 ocfs2_dlmfs,ocfs2_stack_o2cb,ocfs2_dlm
ocfs2_stackglue         9692  1 ocfs2_stack_o2cb
configfs               20212  2 ocfs2_nodemanager
nfsd                  186672  4 
auth_rpcgss            33952  1 nfsd
exportfs                3904  1 nfsd
nfs                   214024  0 
lockd                  54568  2 nfsd,nfs
nfs_acl                 2912  2 nfsd,nfs
sunrpc                162528  9 nfsd,auth_rpcgss,nfs,lockd,nfs_acl
ipv6                  235364  35 
loop                   12748  0 
parport_pc             22500  0 
parport                30988  1 parport_pc
pcspkr                  2432  0 
snd_pcm                62596  0 
snd_timer              17800  1 snd_pcm
snd                    45604  2 snd_pcm,snd_timer
soundcore               6368  1 snd
snd_page_alloc          7816  1 snd_pcm
k8temp                  4064  0 
i2c_viapro              6836  0 
i2c_core               19828  1 i2c_viapro
shpchp                 25528  0 
pci_hotplug            23460  1 shpchp
button                  6096  0 
amd64_agp               8772  1 
agpgart                28776  1 amd64_agp
evdev                   8000  0 
dm_mirror              15104  0 
dm_log                  8484  1 dm_mirror
dm_snapshot            14340  0 
dm_mod                 46184  8 dm_mirror,dm_log,dm_snapshot
ide_pci_generic         3908  0 [permanent]
floppy                 47748  0 
ehci_hcd               28396  0 
uhci_hcd               18672  0 
usbcore               118224  3 ehci_hcd,uhci_hcd
via82cxxx               6948  0 [permanent]
ata_generic             4676  0 
r8169                  23684  0 
sd_mod                 22200  10 
thermal                15228  0 
processor              32544  1 thermal
fan                     4164  0 
thermal_sys            10856  3 thermal,processor,fan
amd74xx                 7720  0 [permanent]
ide_core               96136  3 ide_pci_generic,via82cxxx,amd74xx
sata_nv                19240  0 
sata_sil                7176  0 
sata_via                6980  8 
libata                140416  4 ata_generic,sata_nv,sata_sil,sata_via
dock                    8304  1 libata
3w_9xxx                25924  0 
3w_xxxx                21344  0 
scsi_mod              129324  8 ib_iser,iscsi_tcp,libiscsi,scsi_transport_iscsi,sd_mod,libata,3w_9xxx,3w_xxxx
raid1                  18016  4 
raid0                   6368  0 
md_mod                 67068  6 raid1,raid0
reiserfs              189888  0 
xfs                   457976  0 
ext3                  105512  4 
jbd                    39444  1 ext3
mbcache                 7108  1 ext3

** PCI devices:
00:00.0 Host bridge [0600]: VIA Technologies, Inc. K8T800Pro Host Bridge [1106:0282]
	Subsystem: VIA Technologies, Inc. K8T800Pro Host Bridge [1106:0282]
	Control: I/O- Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz+ UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort+ >SERR- <PERR- INTx-
	Latency: 8
	Region 0: Memory at e8000000 (32-bit, prefetchable) [size=128M]
	Capabilities: <access denied>
	Kernel driver in use: agpgart-amd64
	Kernel modules: amd64-agp

00:00.1 Host bridge [0600]: VIA Technologies, Inc. K8T800Pro Host Bridge [1106:1282]
	Control: I/O- Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap- 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 0

00:00.2 Host bridge [0600]: VIA Technologies, Inc. K8T800Pro Host Bridge [1106:2282]
	Control: I/O- Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap- 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 0

00:00.3 Host bridge [0600]: VIA Technologies, Inc. K8T800Pro Host Bridge [1106:3282]
	Control: I/O- Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap- 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 0

00:00.4 Host bridge [0600]: VIA Technologies, Inc. K8T800Pro Host Bridge [1106:4282]
	Control: I/O- Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap- 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 0

00:00.7 Host bridge [0600]: VIA Technologies, Inc. K8T800Pro Host Bridge [1106:7282]
	Control: I/O- Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap- 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 0

00:01.0 PCI bridge [0604]: VIA Technologies, Inc. VT8237 PCI bridge [K8T800/K8T890 South] [1106:b188] (prog-if 00 [Normal decode])
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR+ FastB2B- DisINTx-
	Status: Cap+ 66MHz+ UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 0
	Bus: primary=00, secondary=01, subordinate=01, sec-latency=0
	I/O behind bridge: 0000d000-0000dfff
	Memory behind bridge: f8000000-f80fffff
	Prefetchable memory behind bridge: f0000000-f7ffffff
	Secondary status: 66MHz+ FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort+ <SERR- <PERR-
	BridgeCtl: Parity- SERR+ NoISA- VGA+ MAbort- >Reset- FastB2B-
		PriDiscTmr- SecDiscTmr- DiscTmrStat- DiscTmrSERREn-
	Capabilities: <access denied>
	Kernel modules: shpchp

00:09.0 Ethernet controller [0200]: Realtek Semiconductor Co., Ltd. RTL-8169 Gigabit Ethernet [10ec:8169] (rev 10)
	Subsystem: Realtek Semiconductor Co., Ltd. RTL-8169 Gigabit Ethernet [10ec:8169]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV+ VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz+ UDF- FastB2B+ ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 64 (8000ns min, 16000ns max), Cache Line Size: 32 bytes
	Interrupt: pin A routed to IRQ 17
	Region 0: I/O ports at e000 [size=256]
	Region 1: Memory at f8122000 (32-bit, non-prefetchable) [size=256]
	[virtual] Expansion ROM at 40000000 [disabled] [size=128K]
	Capabilities: <access denied>
	Kernel driver in use: r8169
	Kernel modules: r8169

00:0d.0 Ethernet controller [0200]: Realtek Semiconductor Co., Ltd. RTL-8169 Gigabit Ethernet [10ec:8169] (rev 10)
	Subsystem: Micro-Star International Co., Ltd. K8T Neo2-F V2.0 [1462:7094]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV+ VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz+ UDF- FastB2B+ ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 64 (8000ns min, 16000ns max), Cache Line Size: 32 bytes
	Interrupt: pin A routed to IRQ 16
	Region 0: I/O ports at e100 [size=256]
	Region 1: Memory at f8120000 (32-bit, non-prefetchable) [size=256]
	[virtual] Expansion ROM at 40020000 [disabled] [size=128K]
	Capabilities: <access denied>
	Kernel driver in use: r8169
	Kernel modules: r8169

00:0f.0 RAID bus controller [0104]: VIA Technologies, Inc. VIA VT6420 SATA RAID Controller [1106:3149] (rev 80)
	Subsystem: Micro-Star International Co., Ltd. K8T Neo2-F V2.0 [1462:7094]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz- UDF- FastB2B+ ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 32
	Interrupt: pin B routed to IRQ 20
	Region 0: I/O ports at e200 [size=8]
	Region 1: I/O ports at e300 [size=4]
	Region 2: I/O ports at e400 [size=8]
	Region 3: I/O ports at e500 [size=4]
	Region 4: I/O ports at e600 [size=16]
	Region 5: I/O ports at e700 [size=256]
	Capabilities: <access denied>
	Kernel driver in use: sata_via
	Kernel modules: sata_via

00:0f.1 IDE interface [0101]: VIA Technologies, Inc. VT82C586A/B/VT82C686/A/B/VT823x/A/C PIPC Bus Master IDE [1106:0571] (rev 06) (prog-if 8a [Master SecP PriP])
	Subsystem: Micro-Star International Co., Ltd. K8T Neo2-F V2.0 [1462:7094]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz- UDF- FastB2B+ ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 32
	Interrupt: pin A routed to IRQ 20
	Region 0: [virtual] Memory at 000001f0 (32-bit, non-prefetchable) [size=8]
	Region 1: [virtual] Memory at 000003f0 (type 3, non-prefetchable) [size=1]
	Region 2: [virtual] Memory at 00000170 (32-bit, non-prefetchable) [size=8]
	Region 3: [virtual] Memory at 00000370 (type 3, non-prefetchable) [size=1]
	Region 4: I/O ports at e800 [size=16]
	Capabilities: <access denied>
	Kernel driver in use: VIA_IDE
	Kernel modules: via82cxxx

00:10.0 USB Controller [0c03]: VIA Technologies, Inc. VT82xxxxx UHCI USB 1.1 Controller [1106:3038] (rev 81) (prog-if 00 [UHCI])
	Subsystem: Micro-Star International Co., Ltd. K8T Neo2-F V2.0 [1462:7094]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 32, Cache Line Size: 32 bytes
	Interrupt: pin A routed to IRQ 21
	Region 4: I/O ports at e900 [size=32]
	Capabilities: <access denied>
	Kernel driver in use: uhci_hcd
	Kernel modules: uhci-hcd

00:10.1 USB Controller [0c03]: VIA Technologies, Inc. VT82xxxxx UHCI USB 1.1 Controller [1106:3038] (rev 81) (prog-if 00 [UHCI])
	Subsystem: Micro-Star International Co., Ltd. K8T Neo2-F V2.0 [1462:7094]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 32, Cache Line Size: 32 bytes
	Interrupt: pin A routed to IRQ 21
	Region 4: I/O ports at ea00 [size=32]
	Capabilities: <access denied>
	Kernel driver in use: uhci_hcd
	Kernel modules: uhci-hcd

00:10.2 USB Controller [0c03]: VIA Technologies, Inc. VT82xxxxx UHCI USB 1.1 Controller [1106:3038] (rev 81) (prog-if 00 [UHCI])
	Subsystem: Micro-Star International Co., Ltd. K8T Neo2-F V2.0 [1462:7094]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 32, Cache Line Size: 32 bytes
	Interrupt: pin B routed to IRQ 21
	Region 4: I/O ports at eb00 [size=32]
	Capabilities: <access denied>
	Kernel driver in use: uhci_hcd
	Kernel modules: uhci-hcd

00:10.3 USB Controller [0c03]: VIA Technologies, Inc. VT82xxxxx UHCI USB 1.1 Controller [1106:3038] (rev 81) (prog-if 00 [UHCI])
	Subsystem: Micro-Star International Co., Ltd. K8T Neo2-F V2.0 [1462:7094]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 32, Cache Line Size: 32 bytes
	Interrupt: pin B routed to IRQ 21
	Region 4: I/O ports at ec00 [size=32]
	Capabilities: <access denied>
	Kernel driver in use: uhci_hcd
	Kernel modules: uhci-hcd

00:10.4 USB Controller [0c03]: VIA Technologies, Inc. USB 2.0 [1106:3104] (rev 86) (prog-if 20 [EHCI])
	Subsystem: Micro-Star International Co., Ltd. K8T Neo2-F V2.0 [1462:7094]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV+ VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 32, Cache Line Size: 64 bytes
	Interrupt: pin C routed to IRQ 21
	Region 0: Memory at f8121000 (32-bit, non-prefetchable) [size=256]
	Capabilities: <access denied>
	Kernel driver in use: ehci_hcd
	Kernel modules: ehci-hcd

00:11.0 ISA bridge [0601]: VIA Technologies, Inc. VT8237 ISA bridge [KT600/K8T800/K8T890 South] [1106:3227]
	Subsystem: VIA Technologies, Inc. DFI KT600-AL / Soltek SL-B9D-FGR Motherboard [1106:3227]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping+ SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz- UDF- FastB2B- ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 0
	Capabilities: <access denied>
	Kernel modules: i2c-viapro

00:18.0 Host bridge [0600]: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] HyperTransport Technology Configuration [1022:1100]
	Control: I/O- Mem- BusMaster- SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz- UDF- FastB2B- ParErr- DEVSEL=fast >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Capabilities: <access denied>

00:18.1 Host bridge [0600]: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] Address Map [1022:1101]
	Control: I/O- Mem- BusMaster- SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap- 66MHz- UDF- FastB2B- ParErr- DEVSEL=fast >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-

00:18.2 Host bridge [0600]: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] DRAM Controller [1022:1102]
	Control: I/O- Mem- BusMaster- SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap- 66MHz- UDF- FastB2B- ParErr- DEVSEL=fast >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-

00:18.3 Host bridge [0600]: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] Miscellaneous Control [1022:1103]
	Control: I/O- Mem- BusMaster- SpecCycle- MemWINV- VGASnoop- ParErr- Stepping- SERR- FastB2B- DisINTx-
	Status: Cap- 66MHz- UDF- FastB2B- ParErr- DEVSEL=fast >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Kernel driver in use: k8temp
	Kernel modules: k8temp

01:00.0 VGA compatible controller [0300]: ATI Technologies Inc Radeon RV100 QY [Radeon 7000/VE] [1002:5159] (prog-if 00 [VGA controller])
	Subsystem: PC Partner Limited Sapphire Radeon VE 7000 DDR [174b:7c28]
	Control: I/O+ Mem+ BusMaster+ SpecCycle- MemWINV- VGASnoop- ParErr- Stepping+ SERR- FastB2B- DisINTx-
	Status: Cap+ 66MHz+ UDF- FastB2B+ ParErr- DEVSEL=medium >TAbort- <TAbort- <MAbort- >SERR- <PERR- INTx-
	Latency: 32 (2000ns min), Cache Line Size: 32 bytes
	Interrupt: pin A routed to IRQ 10
	Region 0: Memory at f0000000 (32-bit, prefetchable) [size=128M]
	Region 1: I/O ports at d000 [size=256]
	Region 2: Memory at f8020000 (32-bit, non-prefetchable) [size=64K]
	[virtual] Expansion ROM at f8000000 [disabled] [size=128K]
	Capabilities: <access denied>
	Kernel modules: radeonfb



-- System Information:
Debian Release: 5.0.2
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: i386 (i686)

Kernel: Linux 2.6.26-2-686 (SMP w/1 CPU core)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages linux-image-2.6.26-2-686 depends on:
ii  debconf [debconf-2.0]         1.5.24     Debian configuration management sy
ii  initramfs-tools [linux-initra 0.92o      tools for generating an initramfs
ii  module-init-tools             3.4-1      tools for managing Linux kernel mo

Versions of packages linux-image-2.6.26-2-686 recommends:
ii  libc6-i686                    2.7-18     GNU C Library: Shared libraries [i

Versions of packages linux-image-2.6.26-2-686 suggests:
ii  lilo                          1:22.8-7   LInux LOader - The Classic OS load
pn  linux-doc-2.6.26              <none>     (no description available)

-- debconf information:
  linux-image-2.6.26-2-686/postinst/bootloader-error-2.6.26-2-686:
  shared/kernel-image/really-run-bootloader: true
  linux-image-2.6.26-2-686/postinst/old-dir-initrd-link-2.6.26-2-686: true
  linux-image-2.6.26-2-686/preinst/overwriting-modules-2.6.26-2-686: true
  linux-image-2.6.26-2-686/postinst/bootloader-test-error-2.6.26-2-686:
  linux-image-2.6.26-2-686/postinst/depmod-error-2.6.26-2-686: false
  linux-image-2.6.26-2-686/preinst/bootloader-initrd-2.6.26-2-686: true
  linux-image-2.6.26-2-686/preinst/abort-overwrite-2.6.26-2-686:
  linux-image-2.6.26-2-686/preinst/abort-install-2.6.26-2-686:
  linux-image-2.6.26-2-686/postinst/depmod-error-initrd-2.6.26-2-686: false
  linux-image-2.6.26-2-686/postinst/create-kimage-link-2.6.26-2-686: true
  linux-image-2.6.26-2-686/preinst/failed-to-move-modules-2.6.26-2-686:
  linux-image-2.6.26-2-686/preinst/initrd-2.6.26-2-686:
  linux-image-2.6.26-2-686/preinst/lilo-has-ramdisk:
  linux-image-2.6.26-2-686/prerm/would-invalidate-boot-loader-2.6.26-2-686: true
  linux-image-2.6.26-2-686/postinst/kimage-is-a-directory:
  linux-image-2.6.26-2-686/postinst/old-initrd-link-2.6.26-2-686: true
  linux-image-2.6.26-2-686/preinst/elilo-initrd-2.6.26-2-686: true
  linux-image-2.6.26-2-686/preinst/lilo-initrd-2.6.26-2-686: true
  linux-image-2.6.26-2-686/prerm/removing-running-kernel-2.6.26-2-686: true
  linux-image-2.6.26-2-686/postinst/old-system-map-link-2.6.26-2-686: true





More information about the Secure-testing-team mailing list