Linux Kernel Virtual Dynamic Shared Objects Boundary Error May Let Local Users Gain Elevated Privileges
|
|
SecurityTracker Alert ID: 1021137
|
|
SecurityTracker URL: http://securitytracker.com/id?1021137
|
|
CVE Reference: CVE-2008-3527
(Links to External Site)
|
Date: Nov 4 2008
|
Impact: Denial of service via local system, Root access via local system, User access via local system
|
Fix Available: Yes
Vendor Confirmed: Yes
|
Version(s): 2.6
|
Description: A vulnerability was reported in the Linux Kernel. A local user can cause denial of service conditions. A local user may be able to obtain elevated privileges on the target system.
The Virtual Dynamic Shared Objects (vDSO) implementation does not properly check the bounds of user-supplied data.
Tavis Ormandy reported this vulnerability.
|
Impact: A local user can cause denial of service conditions on the target system.
A local user may be able to obtain elevated privileges on the target system.
|
Solution: The vendor has issued a fix [in February 2007], available at:
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=7d91d531900bfa1165d445390b3b13a8013f98f7
|
Vendor URL: www.kernel.org/ (Links to External Site)
|
Cause: Boundary error
|
Underlying OS: Linux (Caldera/SCO), Linux (Conectiva), Linux (Debian), Linux (EnGarde), Linux (Gentoo), Linux (HP Secure OS), Linux (Immunix), Linux (Mandriva/Mandrake), Linux (Progeny Debian), Linux (Red Hat Enterprise), Linux (Red Hat Fedora), Linux (Red Hat Linux), Linux (SGI), Linux (Slackware), Linux (Sun), Linux (SuSE), Linux (Trustix), Linux (Turbo Linux), Linux (Ubuntu), Linux (Xandros)
|
|
Message History:
This archive entry has one or more follow-up message(s) listed below.
|
Source Message Contents
|
Date: Tue, 4 Nov 2008 08:53:19 -0500
Subject: Linux kernel
|
Red Hat:
* Tavis Ormandy reported missing boundary checks in the Virtual Dynamic
Shared Objects (vDSO) implementation. This could allow a local unprivileged
user to cause a denial of service or escalate privileges. (CVE-2008-3527,
Important)
|
|