Friday, October 22, 2010

Linux kernel: vulnerabilities

Users of Linux kernel please be advised of vulnerabilities that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
USN-1000-1: [USN-1000-1] Linux kernel vulnerabilities
Details follow:



Joel Becker discovered that OCFS2 did not correctly validate on-disk

symlink structures. If an attacker were able to trick a user or automated

system into mounting a specially crafted filesystem, it could crash the

system or exposde kernel memory, leading to a loss of privacy. (Ubuntu

6.06 LTS, 8.04 LTS, and 9.04 were not affected.)
Read more at www.criticalwatch.com
 

No comments:

Post a Comment