security

Total 112
Today 0
profile_image
ino
05-10-11 23:29 0개 2,750회
Linux Kernel Local Denial of Service and Security Bypass Issues
Multiple vulnerabilities were identified in Linux Kernel, which could be exploited by local attackers to cause a denial of service or bypass certain security restrictions.



The first issue is due to a memory leak error in "/security/keys/request_key_auth.c", which could be exploited by malicious users to cause a denial of service.



The second vulnerability is due to a memory leak error in "/fs/namei.c" when the CONFIG_AUDITSYSCALL option is enabled, which could be exploited by malicious users to cause a denial of service.



The third flaw is due to an error in the file "drivers/char/drm/drm_stub.c" that does not properly validate "debug" sysfs permissions, which could be exploited by local attackers to bypass certain security restrictions and enable drm debugging.



* Affected Products *



Linux Kernel version 2.6.13.3 and prior

Linux Kernel version 2.6.14-rc3 and prior



* Solution *



Upgrade to Kernel version 2.6.13.4 or 2.6.14-rc4 :

댓글목록

등록된 댓글이 없습니다.