Impact
remote denial of service
Solution
Please Install the Updated Packages.
Insight
The Linux kernel on openSUSE 10.3 was updated to fix a critical locking problem in the reiserfs code which lead to process deadlocks.
This kernel update also fixes the following two security problems:
- CVE-2006-6058: A local denial of service when mounting MINIX filesystems was fixed.
- CVE-2007-4997: A 2 byte buffer underflow in the ieee80211 stack was fixed, which might be used by attackers in the local WLAN reach to crash the machine.
and the following non security bugs:
- Kernel update to 2.6.22.12
including fixes for:
genirq, x86_64, Infiniband, networking, hwmon, device removal bug [#332612]
- patches.drivers/alsa-hdsp-zero-division:
hdsp - Fix zero division (mainline: 2.6.24-rc1)
- patches.drivers/libata-ata_piix-properly_terminate_DMI_system_list:
Fix improperly terminated array
- patches.rt/patch-2.6.22.1-rt4.openSUSE:
updated existing patch (RT only)
- patches.drivers/alsa-hda-robust-probe:
hda-intel - Improve HD-audio codec probing robustness [#172330] - patches.drivers/alsa-hda-probe-blacklist:
hda-intel - Add probe_mask blacklist [#172330]
- patches.fixes/megaraid_mbox-dell-cerc-support:
Dell CERC support for megaraid_mbox [#267134]
- patches.suse/reiserfs-use-reiserfs_error.diff:
updated existing patch [#299604]
- patches.arch/acpi_gpe_suspend_cleanup-fix.patch:
ACPI: Call acpi_enable_wakeup_device at power_off (updated) [#299882]
- patches.suse/ocfs2-15-fix-heartbeat-write.diff:
Fix heartbeat block writing [#300730]
- patches.suse/ocfs2-14-fix-notifier-hang.diff:
Fix kernel hang during cluster initialization [#300730] - patches.arch/acpi_autoload_bay.patch:
updated existing patch [#302482]
- patches.suse/zc0301_not_claim_logitech_quickcamera.diff:
stop the zc0301 driver from claiming the Logitech QuickCam [#307055]
- patches.fixes/aux-at_vector_size.patch:
Fixed kernel auxv vector overflow in some binfmt_misc cases [#310037]
- patches.fixes/nfs-name-len-limit:
NFS: Fix an Oops in encode_lookup() [#325913]
- patches.arch/acpi_lid-resume.patch:
ACPI: button: send initial lid state after add and resume [#326814]
- patches.fixes/remove-transparent-bridge-sizing:
PCI: remove transparent bridge sizing [#331027]
- patches.fi ...
Description truncated, for more information please check the Reference URL
Affected
kernel on openSUSE 10.3
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2006-6058, CVE-2007-4997 -
CVSS Base Score: 7.1
AV:N/AC:M/Au:N/C:N/I:N/A:C
Related Vulnerabilities