Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-3527
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-3527

Description:
arch/i386/kernel/sysenter.c in the Virtual Dynamic Shared Objects (vDSO) implementation in the Linux kernel before 2.6.21 does not properly check boundaries, which allows local users to gain privileges or cause a denial of service via unspecified vectors, related to the install_special_mapping, syscall, and syscall32_nopage functions.

CVE Status:
Candidate

References:

SUSE
  http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00001.html

ST
  1021137

SAID
  Secunia Advisory: SA32485
  Secunia Advisory: SA32759
  Secunia Advisory: SA33180

REDHAT
  http://www.redhat.com/support/errata/RHSA-2008-0957.html

DEBIAN
  http://www.debian.org/security/2008/dsa-1687

CONFIRM
  http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.21
  http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=7d91d531900bfa1165d445390b3b13a8013f98f7


Return to the previous page.