Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | |||
Test ID: | 1.3.6.1.4.1.25623.1.0.50309 |
Category: | Fedora Local Security Checks |
Title: | Fedora Core 1 FEDORA-2004-111 (kernel) |
Summary: | NOSUMMARY |
Description: | Description: The remote host is missing an update to kernel announced via advisory FEDORA-2004-111. The kernel package contains the Linux kernel (vmlinuz), the core of your Fedora Core Linux operating system. The kernel handles the basic functions of the operating system: memory allocation, process allocation, device input and output, etc. Update Information: A memory leak was fixed in an error path in the do_fork() routine. This was unlikely to have caused problems in real world situations. The information leak fixed in the previous errata was also found to affect XFS and JFS. The Common Vulnerabilities and Exposures project (cve.mitre.org) assigned the names CVE-2004-0133 and CVE-2004-0181 respectively. A vulnerability in the OSS code for SoundBlaster 16 devices was discovered by Andreas Kies. It is possible for local users with access to the sound system to crash the machine (CVE-2004-0178). An automated checked from http://www.coverity.com highlighted a range checking bug in the i810 DRM driver. This was fixed by Andrea Arcangeli and Chris Wright. Arjan van de Ven discovered the framebuffer code was doing direct userspace accesses instead of using correct interfaces to write to userspace. Brad Spengler found a signedness issue in the cpufreq proc handler which could lead to users being able to read arbitary regions of kernel memory. This was fixed by Dominik Brodowski. Shaun Colley found a potential buffer overrun in the panic() function. As this function does not ever return, it is unlikely that this is exploitable, but has been fixed nonetheless. The Common Vulnerabilities and Exposures project (cve.mitre.org) assigned the name CVE-2004-0394 to this issue. Paul Starzetz and Wojciech Purczynski found a lack of bounds checking in the MCAST_MSFILTER socket option which allows user code to write into kernel space, potentially giving the attacker full root priveledges. There has already been proof of concept code published exploiting this hole in a local denial-of-service manner. http://www.isec.pl/vulnerabilities/isec-0015-msfilter.txt has more information. The Common Vulnerabilities and Exposures project (cve.mitre.org) assigned the name CVE-2004-0424 to this issue. The previous security errata actually missed fixes for several important problems. This has been corrected in this update. * Wed Apr 21 2004 Dave Jones - Fix memory leak in do_fork() error path - Really fix CVE-2004-0109 and previous mremap issue. These patches were not applied in the previous errata. - Fix information leak in XFS (CVE-2004-0133) - Fix potential local denial of service in sb16 driver (CVE-2004-0178) - Fix information leak in JFS (CVE-2004-0181) - Add range checking to i810_dma() in DRM driver. - Make ioctl(FBIOGETCMAP) use copy_to_user() rather than memcpy() - Fix information leak in cpufreq userspace ioctl. (CVE-2004-0228) - Fix possible buffer overflow in panic() (CVE-2004-0394) - Fix setsockopt MCAST_MSFILTER integer overflow. (CVE-2004-0424) Solution: Apply the appropriate updates. http://www.fedoranews.org/updates/FEDORA-2004-111.shtml Risk factor : Medium CVSS Score: 2.1 |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2004-0133 BugTraq ID: 10151 http://www.securityfocus.com/bid/10151 En Garde Linux Advisory: ESA-20040428-004 http://www.linuxsecurity.com/advisories/engarde_advisory-4285.html http://security.gentoo.org/glsa/glsa-200407-02.xml http://www.mandriva.com/security/advisories?name=MDKSA-2004:029 http://secunia.com/advisories/11362 SGI Security Advisory: 20040405-01-U ftp://patches.sgi.com/support/free/security/advisories/20040405-01-U.asc http://marc.info/?l=bugtraq&m=108213675028441&w=2 XForce ISS Database: linux-xfs-info-disclosure(15901) https://exchange.xforce.ibmcloud.com/vulnerabilities/15901 Common Vulnerability Exposure (CVE) ID: CVE-2004-0181 BugTraq ID: 10143 http://www.securityfocus.com/bid/10143 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10329 http://www.redhat.com/support/errata/RHSA-2004-504.html http://www.redhat.com/support/errata/RHSA-2005-663.html http://secunia.com/advisories/17002 TurboLinux Advisory: TLSA-2004-14 http://www.turbolinux.com/security/2004/TLSA-2004-14.txt http://www.vupen.com/english/advisories/2005/1878 XForce ISS Database: linux-jfs-info-disclosure(15902) https://exchange.xforce.ibmcloud.com/vulnerabilities/15902 Common Vulnerability Exposure (CVE) ID: CVE-2004-0178 BugTraq ID: 9985 http://www.securityfocus.com/bid/9985 Computer Incident Advisory Center Bulletin: O-121 http://www.ciac.org/ciac/bulletins/o-121.shtml Computer Incident Advisory Center Bulletin: O-127 http://www.ciac.org/ciac/bulletins/o-127.shtml Computer Incident Advisory Center Bulletin: O-193 http://www.ciac.org/ciac/bulletins/o-193.shtml Conectiva Linux advisory: CLA-2004:846 http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000846 Debian Security Information: DSA-479 (Google Search) http://www.debian.org/security/2004/dsa-479 Debian Security Information: DSA-480 (Google Search) http://www.debian.org/security/2004/dsa-480 Debian Security Information: DSA-481 (Google Search) http://www.debian.org/security/2004/dsa-481 Debian Security Information: DSA-482 (Google Search) http://www.debian.org/security/2004/dsa-482 Debian Security Information: DSA-489 (Google Search) http://www.debian.org/security/2004/dsa-489 Debian Security Information: DSA-491 (Google Search) http://www.debian.org/security/2004/dsa-491 Debian Security Information: DSA-495 (Google Search) http://www.debian.org/security/2004/dsa-495 http://linux.bkbits.net:8080/linux-2.4/cset@404ce5967rY2Ryu6Z_uNbYh643wuFA https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9427 http://www.redhat.com/support/errata/RHSA-2004-413.html http://www.redhat.com/support/errata/RHSA-2004-437.html SGI Security Advisory: 20040804-01-U ftp://patches.sgi.com/support/free/security/advisories/20040804-01-U.asc XForce ISS Database: linux-sound-blaster-dos(15868) https://exchange.xforce.ibmcloud.com/vulnerabilities/15868 |
Copyright | Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com |
This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |