New User, Welcome!     Login

<< Previous Next >>

kernel

[SECURITY] [DSA 2153-1] linux-2.6 security update

                 CVE-2010-4163 CVE-2010-4242 CVE-2010-4243 CVE-2010-4248 
                 CVE-2010-4249 CVE-2010-4258 CVE-2010-4342 CVE-2010-4346 
                 CVE-2010-4526 CVE-2010-4527 CVE-2010-4529 CVE-2010-4565 
                 CVE-2010-4649 CVE-2010-4656 CVE-2010-4668 CVE-2011-0521

Several vulnerabilities have been discovered in the Linux kernel that may lead
to a privilege escalation, denial of service or information leak.  The Common
Vulnerabilities and Exposures project identifies the following problems:

CVE-2010-0435


[ MDVSA-2011:029 ] kernel

 Mandriva Linux Security Advisory                         MDVSA-2011:029
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : February 17, 2011
 Affected: Enterprise Server 5.0
 _______________________________________________________________________

 Problem Description:

[ MDVSA-2009:148 ] kernel

 Mandriva Linux Security Advisory                         MDVSA-2009:148
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : July 7, 2009
 Affected: 2009.1
 _______________________________________________________________________

 Problem Description:

[ MDVSA-2009:301 ] kernel

 Mandriva Linux Security Advisory                         MDVSA-2009:301
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : November 20, 2009
 Affected: Enterprise Server 5.0
 _______________________________________________________________________

 Problem Description:

[ MDVSA-2008:174 ] kernel

 Mandriva Linux Security Advisory                         MDVSA-2008:174
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : August 19, 2008
 Affected: Corporate 4.0
 _______________________________________________________________________

 Problem Description:

CORE-2008-0716 - Sun xVM VirtualBox Privilege Escalation Vulnerability

virtualization technologies. In May 2008, Sun Microsystems announced
that the number of downloads of the open source VirtualBox software
package passed the five million mark [2].

When used on a Windows Host Operating System VirtualBox installs a
kernel driver ('VBoxDrv.sys') to control virtualization of guest
Operating Systems.

An input validation vulnerability was discovered within VirtualBox's
'VBoxDrv.sys' driver that could allow an attacker, with local but
un-privileged access to a host where VirtualBox is installed, to execute

[ MDVSA-2009:329 ] kernel

 Mandriva Linux Security Advisory                         MDVSA-2009:329
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : December 9, 2009
 Affected: 2009.1, 2010.0
 _______________________________________________________________________

 Problem Description:

[SECURITY] [DSA 1915-1] New Linux 2.6.26 packages fix several vulnerabilities

Additional information about this change, including instructions for
making this change locally in advance of 5.0.4 (recommended), can be
found at:
  http://wiki.debian.org/mmap_min_addr

Several vulnerabilities have been discovered in the Linux kernel that
may lead to a denial of service, sensitive memory leak or privilege escalation.
The Common Vulnerabilities and Exposures project identifies the following
problems:

CVE-2009-2695

[ MDVSA-2008:105 ] - Updated kernel packages fix vulnerabilities

 
 Mandriva Linux Security Advisory                         MDVSA-2008:105
 http://www.mandriva.com/security/
 _______________________________________________________________________
 
 Package : kernel
 Date    : May 21, 2008
 Affected: 2007.1
 _______________________________________________________________________
 
 Problem Description:

[ MDVSA-2008:105 ] - Updated kernel packages fix vulnerabilities

 
 Mandriva Linux Security Advisory                         MDVSA-2008:105
 http://www.mandriva.com/security/
 _______________________________________________________________________
 
 Package : kernel
 Date    : May 21, 2008
 Affected: 2007.1
 _______________________________________________________________________
 
 Problem Description:

[ MDVSA-2008:105 ] - Updated kernel packages fix vulnerabilities

 
 Mandriva Linux Security Advisory                         MDVSA-2008:105
 http://www.mandriva.com/security/
 _______________________________________________________________________
 
 Package : kernel
 Date    : May 21, 2008
 Affected: 2007.1
 _______________________________________________________________________
 
 Problem Description:

[ MDVSA-2008:105 ] - Updated kernel packages fix vulnerabilities

 
 Mandriva Linux Security Advisory                         MDVSA-2008:105
 http://www.mandriva.com/security/
 _______________________________________________________________________
 
 Package : kernel
 Date    : May 21, 2008
 Affected: 2007.1
 _______________________________________________________________________
 
 Problem Description:

[ MDVSA-2008:044 ] - Updated kernel packages fix multiple vulnerabilities and bugs

 
 Mandriva Linux Security Advisory                         MDVSA-2008:044
 http://www.mandriva.com/security/
 _______________________________________________________________________
 
 Package : kernel
 Date    : February 12, 2008
 Affected: 2008.0
 _______________________________________________________________________
 
 Problem Description:

[ MDVSA-2010:066 ] kernel

 Mandriva Linux Security Advisory                         MDVSA-2010:066
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : March 24, 2010
 Affected: 2010.0
 _______________________________________________________________________

 Problem Description:

CVE-2010-2020: FreeBSD kernel NFS client local vulnerabilities

Census ID:          census-2010-0001
URL:               
http://census-labs.com/news/2010/05/26/freebsd-kernel-nfsclient/
CVE ID:             CVE-2010-2020
Affected Products:  FreeBSD 8.0-RELEASE, 7.3-RELEASE, 7.2-RELEASE
Class:              Improper Input Validation (CWE-20)
Remote:             No
Discovered by:      Patroklos Argyroudis

We have discovered two improper input validation vulnerabilities in the

[ MDVSA-2010:088 ] kernel

 Mandriva Linux Security Advisory                         MDVSA-2010:088
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : April 30, 2010
 Affected: 2010.0
 _______________________________________________________________________

 Problem Description:

[ MDVSA-2008:008 ] - Updated kernel packages fix multiple vulnerabilities and bugs

 
 Mandriva Linux Security Advisory                         MDVSA-2008:008
 http://www.mandriva.com/security/
 _______________________________________________________________________
 
 Package : kernel
 Date    : January 11, 2008
 Affected: Corporate 4.0
 _______________________________________________________________________
 
 Problem Description:

HP laptops Software Update tool vulnerability

Advisory:
/////////

There is another remotely exploitable flaw within software preinstalled in HP notebook machines. This time, the culprit is automatic software update tool provided by the vendor.The Potential exploitation may lead to user files loss or altering vital system files (e.g. kernel), thus leaving PC unbootable.



Overview:
/////////


[ MDVSA-2010:257 ] kernel

 Mandriva Linux Security Advisory                         MDVSA-2010:257
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : October 29, 2010
 Affected: 2009.0, Enterprise Server 5.0
 _______________________________________________________________________

 Problem Description:

Linux Kernel 2.6.38 Remote NULL Pointer Dereference

Linux Kernel 2.6.38 Remote NULL Pointer Dereference
====================================================

[Advisory Information]
Title:          Linux kernel 2.6.38: Remote NULL pointer dereference
Release date:   11/05/2011
Last update:    11/05/2011

Credits:        
        Aristide Fattori, Universit degli Studi di Milano (joystick@security.dico.unimi.it)

[SECURITY] [DSA 1787-1] New Linux 2.6.24 packages fix several vulnerabilities

                 CVE-2009-0031 CVE-2009-0065 CVE-2009-0269 CVE-2009-0322
                 CVE-2009-0675 CVE-2009-0676 CVE-2009-0745 CVE-2009-0834
                 CVE-2009-0859 CVE-2009-1046 CVE-2009-1192 CVE-2009-1242
                 CVE-2009-1265 CVE-2009-1337 CVE-2009-1338 CVE-2009-1439

Several vulnerabilities have been discovered in the Linux kernel that
may lead to a denial of service or privilege escalation. The Common
Vulnerabilities and Exposures project identifies the following
problems:

CVE-2008-4307

[SECURITY] [DSA 1929-1] New Linux 2.6.18 packages fix several vulnerabilities

Debian-specific: no
CVE Id(s)      : CVE-2009-1883 CVE-2009-2909 CVE-2009-3001 CVE-2009-3002
                 CVE-2009-3228 CVE-2009-3238 CVE-2009-3286 CVE-2009-3547
                 CVE-2009-3612 CVE-2009-3621

Several vulnerabilities have been discovered in the Linux kernel that
may lead to a denial of service, sensitive memory leak or privilege
escalation.  The Common Vulnerabilities and Exposures project
identifies the following problems:

CVE-2009-1883

[ MDVSA-2008:220-1 ] kernel

 Mandriva Linux Security Advisory                       MDVSA-2008:220-1
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : November 19, 2008
 Affected: Corporate 4.0
 _______________________________________________________________________

 Problem Description:

[ MDVSA-2009:118 ] kernel

 Mandriva Linux Security Advisory                         MDVSA-2009:118
 http://www.mandriva.com/security/
 _______________________________________________________________________

 Package : kernel
 Date    : May 19, 2009
 Affected: 2009.0
 _______________________________________________________________________

 Problem Description:

FreeBSD Security Advisory FreeBSD-SA-09:13.pipe

following sections, please visit <URL:http://security.FreeBSD.org/>.

I.   Background

Pipes are a form of inter-process communication (IPC) provided by the
FreeBSD kernel.  kqueue is an event management API that applications can
use to monitor pipes and other kernel services.

II.  Problem Description

A race condition exists in the pipe close() code relating to kqueues,

PHP "multipart/form-data" denial of service

The system is slowed down to a crawl.
Basically you cannot even write a command in a remote PUTTY session.

14:17 - web server is not responsive.
The console is continuously displaying kernel error messages like:
swap_pager_getswapspace(2): failed
swap_pager_getswapspace(16): failed
swap_pager_getswapspace(3): failed
...
pid 61248 (httpd), uid 80 inumber 5 on /var: out of inodes

[USN-578-1] Linux kernel vulnerabilities

  linux-image-2.6.15-51-sparc64-smp  2.6.15-51.66

After a standard system upgrade you need to reboot your computer to
effect the necessary changes.

ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
reinstall all third party kernel modules you might have installed. If
you use linux-restricted-modules, you have to update that package as
well to get modules which work with the new kernel version. Unless you
manually uninstalled the standard kernel metapackages (e.g. linux-386,

iDefense Security Advisory 09.25.07: Linux Kernel ALSA snd_mem_proc_read Information Disclosure Vulnerability

Linux Kernel ALSA snd_mem_proc_read Information Disclosure Vulnerability

iDefense Security Advisory 09.25.07
http://labs.idefense.com/intelligence/vulnerabilities/
Sep 25, 2007

I. BACKGROUND

Linux is a clone of the UNIX operating system, written from scratch by
Linus Torvalds with assistance from a loosely-knit team of hackers

CVE-2010-3014: Coda Filesystem Kernel Memory Disclosure

                         VSR Security Advisory
                       http://www.vsecurity.com/

- -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-

Advisory Name: Coda Filesystem Kernel Memory Disclosure
 Release Date: 2010-08-16
  Application: Coda kernel module for NetBSD and FreeBSD
     Versions: All known versions
     Severity: Medium
       Author: Dan Rosenberg < drosenberg (at) vsecurity (dot) com >

[USN-1105-1] Linux kernel vulnerabilities

  linux-image-2.6.24-29-xen       2.6.24-29.88

After a standard system update you need to reboot your computer to make
all the necessary changes.

ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
reinstall all third party kernel modules you might have installed. If
you use linux-restricted-modules, you have to update that package as
well to get modules which work with the new kernel version. Unless you
manually uninstalled the standard kernel metapackages (e.g. linux-generic,

<<Previous Next>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!