Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.50531
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2004:050 (kernel)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to kernel
announced via advisory MDKSA-2004:050.

Brad Spender discovered an exploitable bug in the cpufreq code in
the Linux 2.6 kernel (CVE-2004-0228).

As well, a permissions problem existed on some SCSI drivers
a fix
from Olaf Kirch is provided that changes the mode from 0777 to 0600.

This update also provides a 10.0/amd64 kernel with fixes for the
previous MDKSA-2004:037 advisory as well as the above-noted fixes.

The provided packages are patched to fix these vulnerabilities. All
users are encouraged to upgrade to these updated kernels.

To update your kernel, please follow the directions located at:

http://www.mandrakesoft.com/kernelupdate

Affected versions: 10.0, 9.2

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2004:050
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0228

Risk factor : High

CVSS Score:
7.2

Cross-Ref: BugTraq ID: 10201
Common Vulnerability Exposure (CVE) ID: CVE-2004-0228
Conectiva Linux advisory: CLA-2004:852
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000852
http://fedoranews.org/updates/FEDORA-2004-111.shtml
http://security.gentoo.org/glsa/glsa-200407-02.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2004:050
http://secunia.com/advisories/11429
http://secunia.com/advisories/11464
http://secunia.com/advisories/11486
http://secunia.com/advisories/11491
http://secunia.com/advisories/11683
SuSE Security Announcement: SuSE-SA:2004:010 (Google Search)
http://www.novell.com/linux/security/advisories/2004_10_kernel.html
XForce ISS Database: linux-cpufreq-info-disclosure(15951)
https://exchange.xforce.ibmcloud.com/vulnerabilities/15951
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2024 E-Soft Inc. All rights reserved.