New User, Welcome!     Login

anonymous pipe

[ MDVSA-2009:301 ] kernel

 via IP-DDP datagrams. (CVE-2009-2903)
 
 Multiple race conditions in fs/pipe.c in the Linux kernel before
 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer
 dereference and system crash) or gain privileges by attempting to
 open an anonymous pipe via a /proc/*/fd/ pathname. (CVE-2009-3547)
 
 The tcf_fill_node function in net/sched/cls_api.c in the netlink
 subsystem in the Linux kernel 2.6.x before 2.6.32-rc5, and 2.4.37.6
 and earlier, does not initialize a certain tcm__pad2 structure member,
 which might allow local users to obtain sensitive information from

[ MDVSA-2009:329 ] kernel

 via IP-DDP datagrams. (CVE-2009-2903)
 
 Multiple race conditions in fs/pipe.c in the Linux kernel before
 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer
 dereference and system crash) or gain privileges by attempting to
 open an anonymous pipe via a /proc/*/fd/ pathname. (CVE-2009-3547)
 
 The tcf_fill_node function in net/sched/cls_api.c in the netlink
 subsystem in the Linux kernel 2.6.x before 2.6.32-rc5, and 2.4.37.6
 and earlier, does not initialize a certain tcm__pad2 structure member,
 which might allow local users to obtain sensitive information from



Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!