CVE-2010-0291

Properties

Published:
14.02.2010
Updated:
31.03.2010
Patch available:
Severity:
Medium
CVSS vector:
(AV:L/AC:L/Au:N/C:P/I:P/A:P)
Product:
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel
linux: kernel

Vulnerability description

The Linux kernel before 2.6.32.4 allows local users to gain privileges or cause a denial of service (panic) by calling the (1) mmap or (2) mremap function, aka the "do_mremap() mess" or "mremap/mmap mess."

References:

CONFIRM: http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4
CONFIRM: https://bugzilla.redhat.com/show_bug.cgi?id=556703
BID: http://www.securityfocus.com/bid/37906
REDHAT: http://www.redhat.com/support/errata/RHSA-2010-0161.html
DEBIAN: http://www.debian.org/security/2010/dsa-2005
DEBIAN: http://www.debian.org/security/2010/dsa-1996
SECUNIA: http://secunia.com/advisories/38492
MLIST: http://marc.info/?l=oss-security&m=126406814304720&w=2
MLIST: http://marc.info/?l=oss-security&m=126400443123998&w=2
MLIST: http://marc.info/?l=oss-security&m=126399980216047&w=2
MLIST: http://marc.info/?l=oss-security&m=126396609004884&w=2
MLIST: http://marc.info/?l=oss-security&m=126396065732697&w=2
MLIST: http://marc.info/?l=oss-security&m=126395874130875&w=2
MLIST: http://marc.info/?l=oss-security&m=126393370931972&w=2
MLIST: http://marc.info/?l=oss-security&m=126388181420690&w=2
MLIST: http://marc.info/?l=linux-arch&m=126004438008670&w=2
MLIST: http://groups.google.com/group/linux.kernel/msg/895f20870532241e
CONFIRM: http://groups.google.co.jp/group/fa.linux.kernel/browse_thread/thread/8bf22336b1082090
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=f8b7256096a20436f6d0926747e3ac3d64c81d24
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=f106af4e90eadd76cfc0b5325f659619e08fb762
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=ecc1a8993751de4e82eb18640d631dae1f626bd6
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=e77414e0aad6a1b063ba5e5750c582c75327ea6a
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=c4caa778157dbbf04116f0ac2111e389b5cd7a29
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=bb52d6694002b9d632bb355f64daa045c6293a4e
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=aa65607373a4daf2010e8c3867b6317619f3c1a3
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=935874141df839c706cd6cdc438e85eb69d1525e
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=9206de95b1ea68357996ec02be5db0638a0de2c1
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=8c7b49b3ecd48923eb64ff57e07a1cdb74782970
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=570dcf2c15463842e384eb597a87c1e39bead99b
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=564b3bffc619dcbdd160de597b0547a7017ea010
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=54f5de709984bae0d31d823ff03de755f9dcac54
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2ea1d13f64efdf49319e86c87d9ba38c30902782
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2c6a10161d0b5fc047b5bd81b03693b9af99fab5
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=1a0ef85f84feb13f07b604fcf5b90ef7c2b5c82f
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=0ec62d290912bb4b989be7563851bc364ec73b56
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=097eed103862f9c6a97f2e415e21d1134017b135
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=05d72faa6d13c9d857478a5d35c85db9adada685
CONFIRM: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=0067bd8a55862ac9dd212bd1c4f6f5bff1ca1301