SB2007110602 - Integer overflow in Linux kernel
Published: November 6, 2007
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Integer overflow (CVE-ID: CVE-2007-4997)
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to integer overflow error. A remote non-authenticated attacker can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- ftp://ftp.kernel.org/pub/linux/kernel/people/bunk/linux-2.6.16.y/testing/ChangeLog-2.6.16.57-rc1
- http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.23
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:226
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:232
- http://www.redhat.com/support/errata/RHSA-2007-0993.html
- http://www.novell.com/linux/security/advisories/2007_59_kernel.html
- http://lists.opensuse.org/opensuse-security-announce/2007-12/msg00001.html
- http://secunia.com/advisories/27555
- http://secunia.com/advisories/27614
- http://secunia.com/advisories/27824
- http://secunia.com/advisories/27912
- http://www.debian.org/security/2007/dsa-1428
- http://www.redhat.com/support/errata/RHSA-2007-1104.html
- http://secunia.com/advisories/28033
- http://secunia.com/advisories/28162
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:008
- http://www.ubuntu.com/usn/usn-574-1
- http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00002.html
- http://secunia.com/advisories/28706
- http://secunia.com/advisories/28806
- http://www.ubuntu.com/usn/usn-558-1
- http://www.securityfocus.com/bid/26337
- http://secunia.com/advisories/28170
- http://www.ubuntu.com/usn/usn-578-1
- http://secunia.com/advisories/28971
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:105
- http://www.vupen.com/english/advisories/2007/3718
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38247
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10596
- http://git.kernel.org/?p=linux/kernel/git/avi/kvm.git%3Ba=commitdiff%3Bh=04045f98e0457aba7d4e6736f37eed189c48a5f7