SciLinux: CVE-2006-0558 kernel SL5.x i386/x86_64
Summary
Date: Mon, 17 Sep 2007 15:30:07 -0500Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for kernel on SL5.x i386/x86_64Comments: To: scientific-linux-errata@fnal.govSynopsis: Moderate: kernel security and bugfix updateIssue date: 2007-09-04CVE Names: CVE-2006-0558 CVE-2007-1217* a flaw in the ISDN CAPI subsystem that allowed a remote user to cause adenial of service or potential remote access. Exploitation would requirethe attacker to be able to send arbitrary frames over the ISDN network tothe victim's machine. (CVE-2007-1217, Moderate)* a flaw in the perfmon subsystem on ia64 platforms that allowed a localuser to cause a denial of service. (CVE-2006-0558, Moderate)In addition, the following bugs were addressed:* a panic after reloading of the LSI Fusion driver.* a vm performance problem was corrected by balancing inactive page lists.* added a nodirplus option to address NFSv3 performance issues with largedirectories.* changed the personality handling to disallow personality changes ofsetuid and setgid binaries. This ensures they keep any randomization andExec-shield protection.SL 5.x SRPMS: i386: kernel-2.6.18-8.1.10.el5.i686.rpm kernel-devel-2.6.18-8.1.10.el5.i686.rpm kernel-doc-2.6.18-8.1.10.el5.noarch.rpm kernel-PAE-2.6.18-8.1.10.el5.i686.rpm kernel-PAE-devel-2.6.18-8.1.10.el5.i686.rpm kernel-xen-2.6.18-8.1.10.el5.i686.rpm kernel-xen-devel-2.6.18-8.1.10.el5.i686.rpm Dependancies:kernel-module-fuse-2.6.18-8.1.10.el5-2.6.3-1.el5.i686.rpmkernel-module-fuse-2.6.18-8.1.10.el5PAE-2.6.3-1.el5.i686.rpmkernel-module-fuse-2.6.18-8.1.10.el5xen-2.6.3-1.el5.i686.rpmkernel-module-ipw3945-2.6.18-8.1.10.el5-1.2.0-1.sl5.i686.rpmkernel-module-ipw3945-2.6.18-8.1.10.el5PAE-1.2.0-1.sl5.i686.rpmkernel-module-ipw3945-2.6.18-8.1.10.el5xen-1.2.0-1.sl5.i686.rpmkernel-module-madwifi-2.6.18-8.1.10.el5-0.9.3.1-11.sl5.i686.rpmkernel-module-madwifi-2.6.18-8.1.10.el5PAE-0.9.3.1-11.sl5.i686.rpmkernel-module-madwifi-2.6.18-8.1.10.el5xen-0.9.3.1-11.sl5.i686.rpmkernel-module-madwifi-hal-2.6.18-8.1.10.el5-0.9.3.1-11.sl5.i686.rpmkernel-module-madwifi-hal-2.6.18-8.1.10.el5PAE-0.9.3.1-11.sl5.i686.rpmkernel-module-madwifi-hal-2.6.18-8.1.10.el5xen-0.9.3.1-11.sl5.i686.rpmkernel-module-ndiswrapper-2.6.18-8.1.10.el5-1.41-1.SL.i686.rpmkernel-module-ndiswrapper-2.6.18-8.1.10.el5PAE-1.41-1.SL.i686.rpmkernel-module-ndiswrapper-2.6.18-8.1.10.el5xen-1.41-1.SL.i686.rpmkernel-module-openafs-2.6.18-8.1.10.el5-1.4.4-42.SL5.i686.rpmkernel-module-openafs-2.6.18-8.1.10.el5PAE-1.4.4-42.SL5.i686.rpmkernel-module-openafs-2.6.18-8.1.10.el5xen-1.4.4-42.SL5.i686.rpmkernel-module-r1000-2.6.18-8.1.10.el5-1.05-1.sl.i686.rpmkernel-module-r1000-2.6.18-8.1.10.el5PAE-1.05-1.sl.i686.rpmkernel-module-r1000-2.6.18-8.1.10.el5xen-1.05-1.sl.i686.rpm x86_64: kernel-2.6.18-8.1.10.el5.x86_64.rpm kernel-devel-2.6.18-8.1.10.el5.x86_64.rpm kernel-headers-2.6.18-8.1.10.el5.x86_64.rpm kernel-xen-2.6.18-8.1.10.el5.x86_64.rpm kernel-xen-devel-2.6.18-8.1.10.el5.x86_64.rpm Dependancies:kernel-module-fuse-2.6.18-8.1.10.el5-2.6.3-1.SL.x86_64.rpmkernel-module-fuse-2.6.18-8.1.10.el5xen-2.6.3-1.SL.x86_64.rpmkernel-module-ipw3945-2.6.18-8.1.10.el5-1.2.0-1.sl5.x86_64.rpmkernel-module-ipw3945-2.6.18-8.1.10.el5xen-1.2.0-1.sl5.x86_64.rpmkernel-module-madwifi-2.6.18-8.1.10.el5-0.9.3.1-11.sl5.x86_64.rpmkernel-module-madwifi-2.6.18-8.1.10.el5xen-0.9.3.1-11.sl5.x86_64.rpmkernel-module-madwifi-hal-2.6.18-8.1.10.el5-0.9.3.1-11.sl5.x86_64.rpmkernel-module-madwifi-hal-2.6.18-8.1.10.el5xen-0.9.3.1-11.sl5.x86_64.rpmkernel-module-ndiswrapper-2.6.18-8.1.10.el5-1.41-1.SL.x86_64.rpmkernel-module-ndiswrapper-2.6.18-8.1.10.el5xen-1.41-1.SL.x86_64.rpmkernel-module-openafs-2.6.18-8.1.10.el5-1.4.4-42.SL5.x86_64.rpmkernel-module-openafs-2.6.18-8.1.10.el5xen-1.4.4-42.SL5.x86_64.rpmkernel-module-r1000-2.6.18-8.1.10.el5-1.05-1.sl.x86_64.rpmkernel-module-r1000-2.6.18-8.1.10.el5xen-1.05-1.sl.x86_64.rpmNote: Source code for the updated GFS kernel modules has not been released at this time. We will get these out whenever they are released.-Connie Sieh-Troy Dawson