Secunia Logo  


Secunia PSI WorldMap
 
Linux Kernel 2.4 Multiple Vulnerabilities
Secunia Advisory: SA9316
Release Date: 2003-07-22
Last Update: 2005-01-20
Popularity: 18,703 views

Critical:
Moderately critical
Impact: Privilege escalation
DoS
Where: From remote
Solution Status: Vendor Patch

OS:Astaro Security Linux 3.x
Conectiva Linux 7.0
Conectiva Linux 8
Conectiva Linux 9
Debian GNU/Linux 3.0
Gentoo Linux
Linux Kernel 2.4.x
Mandrake Linux 8.x
Mandrake Linux 9.x
OpenLinux Server 3.x
OpenLinux Workstation 3.x
Red Hat Enterprise Linux AS 2.1
Red Hat Enterprise Linux ES 2.1
Red Hat Enterprise Linux WS 2.1
Red Hat Linux 7.1
Red Hat Linux 7.2
Red Hat Linux 7.3
Red Hat Linux 8.0
Red Hat Linux Advanced Server 2.1 for Itanium
Red Hat Linux Advanced Workstation 2.1 for Itanium
Slackware Linux 8.x
Slackware Linux 9.0
SuSE Linux 7.x
SuSE Linux 8.x
SuSE Linux Connectivity Server
SuSE Linux Database Server
SuSE Linux Desktop 1.x
SuSE Linux Enterprise Server 7
SuSE Linux Enterprise Server 8
SuSE Linux Firewall on CD/Admin host
SuSE Linux Office Server

Secunia CVSS-2 Score: Available in Secunia business solutions

Subscribe: Instant alerts on relevant vulnerabilities


Advisory Content (Page 1 of 3)[ 1 ] [ 2 ] [ 3 ]

Description:
Multiple vulnerabilities has been identified in the Linux Kernel.

1) A local user can see the exact character count transmitted over a serial link. This can be exploited to see the length of password and to learn the inter-keystroke timings. This can be seen in "/proc/tty/driver/serial".

2) A race condition in the "execve()" system call, for more information see:
http://secunia.com/advisories/9154/

3) Normal users could bind to certain UDP ports due to an error in the RPC code.

4) The "execve()" system call stores file descriptors in the file table of the calling process. This allows local users to see restricted file descriptors.

5) Users are able to open entries in "/proc/self". This could cause setuid programs to fail changing ownership and permissions of already opened entries.

6) STP could allow malicious people to alter the bridge topology.

7) STP fails to check the length of data properly. This could lead to a Denial of Service.

8) It is possible to corrupt the forwarding table by sending forged packets (no further details are available).

9+10) Two security issues in the C-Media PCI sound driver result in userspace being accessed insecurely.

Change Page:
[ 1 ] [ 2 ] [ 3 ]



Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Today
New advisories: 6
New vulnerabilities: 23
Updated advisories: 8

Not // 48 views
Debian update for pidgin
Less // 62 views
Debian update for linux-2.6
Less // 53 views
Debian update for drupal6
Highly // 51 views
Debian update for nspr

6th Nov, 2009
New advisories: 17
New vulnerabilities: 65
Updated advisories: 21

Less // 394 views
Debian update for linux-2.6.24
Less // 381 views
Debian update for linux-2.6
Moderately // 345 views
Gentoo update for horde

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Linux Kernel 2.4 Multiple Vulnerabilities // 67 views
2. Internet Explorer Three Vulnerabilities // 65 views
3. Sun Java JDK / JRE Multiple Vulnerabilities // 61 views
4. Debian update for pidgin // 47 views
5. Microsoft PowerPoint OutlineTextRefAtom Parsing Vulnerability // 46 views
6. Sun Solaris mod_perl Two Vulnerabilities // 37 views
7. Google Chrome Two Vulnerabilities // 34 views
8. Mozilla Firefox Multiple Vulnerabilities // 32 views
9. Adobe Flash Player Multiple Vulnerabilities // 26 views
10. Internet Explorer Charset Inheritance Cross-Site Scripting Vulnerability // 26 views