Description: | Description: The remote host is missing an update to kernel announced via advisory MDVSA-2010:034-2.
Some vulnerabilities were discovered and corrected in the Linux 2.6 kernel:
Array index error in the gdth_read_event function in drivers/scsi/gdth.c in the Linux kernel before 2.6.32-rc8 allows local users to cause a denial of service or possibly gain privileges via a negative event index in an IOCTL request. (CVE-2009-3080)
The collect_rx_frame function in drivers/isdn/hisax/hfc_usb.c in the Linux kernel before 2.6.32-rc7 allows attackers to have an unspecified impact via a crafted HDLC packet that arrives over ISDN and triggers a buffer under-read. (CVE-2009-4005)
Additionally, the Linux kernel was updated to the stable release 2.6.27.45.
To update your kernel, please follow the directions located at:
http://www.mandriva.com/en/security/kernelupdate
Update:
The nvidia173-kernel x86_64 packages was missing with MDVSA-2010:034 for the Enterprise 5 product. This advisory provides the missing packages.
Affected: Enterprise Server 5.0
Solution: To upgrade automatically use MandrakeUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you.
http://www.securityspace.com/smysecure/catid.html?in=MDVSA-2010:034-2
Risk factor : High
CVSS Score: 7.2
|