SB2008031801 - Buffer overflow in Linux kernel x86 ia32
Published: March 18, 2008
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Buffer overflow (CVE-ID: CVE-2008-1367)
The vulnerability allows a remote non-authenticated attacker to read and manipulate data.
The vulnerability exists due to memory corruption within the setup_rt_frame() function in arch/x86/kernel/signal_64.c, within the setup_frame() and setup_rt_frame() functions in arch/x86/kernel/signal_32.c, within the ia32_setup_frame() and ia32_setup_rt_frame() functions in arch/x86/ia32/ia32_signal.c. A remote non-authenticated attacker can read and manipulate data.
Remediation
Install update from vendor's website.
References
- http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=469058
- http://gcc.gnu.org/ml/gcc-patches/2008-03/msg00417.html
- http://gcc.gnu.org/ml/gcc-patches/2008-03/msg00428.html
- http://gcc.gnu.org/ml/gcc-patches/2008-03/msg00432.html
- http://gcc.gnu.org/ml/gcc-patches/2008-03/msg00499.html
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=e40cd10ccff3d9fbffd57b93780bee4b7b9bff51
- http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00006.html
- http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00000.html
- http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00002.html
- http://lists.vmware.com/pipermail/security-announce/2008/000023.html
- http://lkml.org/lkml/2008/3/5/207
- http://lwn.net/Articles/272048/#Comments
- http://marc.info/?l=git-commits-head&m=120492000901739&w=2
- http://rhn.redhat.com/errata/RHSA-2008-0508.html
- http://secunia.com/advisories/30110
- http://secunia.com/advisories/30116
- http://secunia.com/advisories/30818
- http://secunia.com/advisories/30850
- http://secunia.com/advisories/30890
- http://secunia.com/advisories/30962
- http://secunia.com/advisories/31246
- http://www.redhat.com/support/errata/RHSA-2008-0211.html
- http://www.redhat.com/support/errata/RHSA-2008-0233.html
- http://www.securityfocus.com/bid/29084
- http://www.vupen.com/english/advisories/2008/2222/references
- https://bugzilla.redhat.com/show_bug.cgi?id=437312
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41340
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11108