SCIENTIFIC-LINUX-ERRATA Archives

April 2012

SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Patrick Riehecky <[log in to unmask]>
Reply To:
Date:
Wed, 18 Apr 2012 09:47:25 -0500
Content-Type:
text/plain
Parts/Attachments:
text/plain (64 lines)
Synopsis:    Moderate: kernel security, bug fix, and enhancement update
Issue Date:  2012-04-17
CVE Numbers: CVE-2012-0879
             CVE-2012-1090
             CVE-2012-1097


The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* Numerous reference count leaks were found in the Linux kernel's block
layer I/O context handling implementation. This could allow a local,
unprivileged user to cause a denial of service. (CVE-2012-0879,
Moderate)

* A flaw was found in the Linux kernel's cifs_lookup() implementation.
POSIX open during lookup should only be supported for regular files. When
non-regular files (for example, a named (FIFO) pipe or other special files)
are opened on lookup, it could cause a denial of service. (CVE-2012-1090,
Moderate)

* It was found that the Linux kernel's register set (regset) common
infrastructure implementation did not check if the required get and set
handlers were initialized. A local, unprivileged user could use this flaw
to cause a denial of service by performing a register set operation with a
ptrace() PTRACE_SETREGSET or PTRACE_GETREGSET request. (CVE-2012-1097,
Moderate)

This update also fixes several bugs and adds various enhancements.
The system must be rebooted for this update to take effect.

SL6:
  i386
     kernel-2.6.32-220.13.1.el6.i686.rpm
     kernel-debug-2.6.32-220.13.1.el6.i686.rpm
     kernel-debug-debuginfo-2.6.32-220.13.1.el6.i686.rpm
     kernel-debug-devel-2.6.32-220.13.1.el6.i686.rpm
     kernel-debuginfo-2.6.32-220.13.1.el6.i686.rpm
     kernel-debuginfo-common-i686-2.6.32-220.13.1.el6.i686.rpm
     kernel-devel-2.6.32-220.13.1.el6.i686.rpm
     kernel-headers-2.6.32-220.13.1.el6.i686.rpm
     perf-2.6.32-220.13.1.el6.i686.rpm
     perf-debuginfo-2.6.32-220.13.1.el6.i686.rpm
     python-perf-2.6.32-220.13.1.el6.i686.rpm
  noarch
     kernel-doc-2.6.32-220.13.1.el6.noarch.rpm
     kernel-firmware-2.6.32-220.13.1.el6.noarch.rpm
  x86_64
     kernel-2.6.32-220.13.1.el6.x86_64.rpm
     kernel-debug-2.6.32-220.13.1.el6.x86_64.rpm
     kernel-debug-debuginfo-2.6.32-220.13.1.el6.x86_64.rpm
     kernel-debug-devel-2.6.32-220.13.1.el6.x86_64.rpm
     kernel-debuginfo-2.6.32-220.13.1.el6.x86_64.rpm
     kernel-debuginfo-common-x86_64-2.6.32-220.13.1.el6.x86_64.rpm
     kernel-devel-2.6.32-220.13.1.el6.x86_64.rpm
     kernel-headers-2.6.32-220.13.1.el6.x86_64.rpm
     perf-2.6.32-220.13.1.el6.x86_64.rpm
     perf-debuginfo-2.6.32-220.13.1.el6.x86_64.rpm
     python-perf-2.6.32-220.13.1.el6.x86_64.rpm

- Scientific Linux Development Team

ATOM RSS1 RSS2