Description: | Description: The remote host is missing an update to kernel announced via advisory FEDORA-2011-2134.
Update Information:
Stable update 2.6.34.8, extra bug fixes, some basic hardware backports for Intel Sandy Bridge upon request. Update to kernel 2.6.34.8: http://www.kernel.org/pub/linux/kernel/v2.6/longterm/v2.6.34/ChangeLog-2.6.34.8
References:
[ 1 ] Bug #652508 - CVE-2010-4165 kernel: possible kernel oops from user MSS https://bugzilla.redhat.com/show_bug.cgi?id=652508 [ 2 ] Bug #672398 - CVE-2011-0521 kernel: av7110 negative array offset https://bugzilla.redhat.com/show_bug.cgi?id=672398 [ 3 ] Bug #662189 - CVE-2010-4346 kernel: install_special_mapping skips security_file_mmap check https://bugzilla.redhat.com/show_bug.cgi?id=662189 [ 4 ] Bug #667916 - CVE-2010-4649 CVE-2011-1044 kernel: IB/uverbs: Handle large number of entries in poll CQ https://bugzilla.redhat.com/show_bug.cgi?id=667916 [ 5 ] Bug #667912 - CVE-2011-0006 kernel: ima: fix add LSM rule bug https://bugzilla.redhat.com/show_bug.cgi?id=667912 [ 6 ] Bug #667907 - CVE-2010-4648 kernel: orinoco: fix TKIP countermeasure behaviour https://bugzilla.redhat.com/show_bug.cgi?id=667907 [ 7 ] Bug #667892 - CVE-2010-4650 kernel: fuse: verify ioctl retries https://bugzilla.redhat.com/show_bug.cgi?id=667892 [ 8 ] Bug #652957 - CVE-2010-4163 CVE-2010-4668 kernel: panic when submitting certain 0-length I/O requests https://bugzilla.redhat.com/show_bug.cgi?id=652957
Solution: Apply the appropriate updates.
This update can be installed with the yum update program. Use su -c 'yum update kernel' at the command line. For more information, refer to Managing Software with yum, available at http://docs.fedoraproject.org/yum/.
http://www.securityspace.com/smysecure/catid.html?in=FEDORA-2011-2134
Risk factor : Critical
CVSS Score: 8.3
|