Advertisement
Promo

Security threats Toolkit

Multiple flaws reported in Linux

Tom Espiner ZDNet.co.uk

Published: 13 Feb 2008 12:50 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Multiple vulnerabilities have been reported in many iterations and distributions of Linux.

The flaws, as reported by Linux vulnerability researcher Jens Axboe on Wednesday, affect versions of Ubuntu, Suse, Red Hat, Mandrake, Debian and iterations of the Linux kernel up to, but not including, Linux 2.6.24.1.

The most serious flaw is a memory-access vulnerability. Rated as "high" severity (the second highest rating) by the US National Vulnerability Database, the memory-access validation flaw allows a local attacker to gain root administrator privileges via "crafted arguments in a vmsplice system call".

Exploit code for this vulnerability is available online.

Security site SecurityFocus has provided links to patches for these vulnerabilities.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
9 out of 13 people found this useful


Company/Topic Alerts

Create a new alert from the list below:








Video icon

Video

Sentry Posts Blog

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment

Beware of keeping your head in the clo...

Information security professionals can look forward to a deepening appreciation for their skills as security continues to be recognised as an essential element for doing business in... More

1 comment

Civil liberties groups attack file-sha...

Civil liberties and digital rights organisations have strongly criticised Lord Mandelson's Digital Economy Bill. Liberty said in a position paper on Tuesday that the bill, part of... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters