SciLinux: CVE-2007-4997 kernel SL4.x i386/x86_64
Summary
Date: Fri, 21 Dec 2007 16:02:15 -0600Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for kernel on SL4.x i386/x86_64Comments: To: "scientific-linux-errata@fnal.gov" Synopsis: Important: kernel security and bug fix updateIssue date: 2007-12-19CVE Names: CVE-2007-4997 CVE-2007-5494A flaw was found in the handling of IEEE 802.11 frames, which affectedseveral wireless LAN modules. In certain situations, a remote attackercould trigger this flaw by sending a malicious packet over a wirelessnetwork, causing a denial of service (kernel crash).(CVE-2007-4997, Important)A memory leak was found in the Red Hat Content Accelerator kernel patch.A local user could use this flaw to cause a denial of service (memoryexhaustion). (CVE-2007-5494, Important)Additionally, the following bugs were fixed:* when running the "ls -la" command on an NFSv4 mount point, incorrectfile attributes, and outdated file size and timestamp information werereturned. As well, symbolic links may have been displayed as actual files.* a bug which caused the cmirror write path to appear deadlocked after asuccessful recovery, which may have caused syncing to hang, has beenresolved.* a kernel panic which occurred when manually configuring LCS interfaces onthe IBM S/390 has been resolved.* when running a 32-bit binary on a 64-bit system, it was possible tommap page at address 0 without flag MAP_FIXED set. This has beenresolved in these updated packages.* the Non-Maskable Interrupt (NMI) Watchdog did not increment the NMIinterrupt counter in "/proc/interrupts" on systems running an AMD OpteronCPU. This caused systems running NMI Watchdog to restart at regularintervals.* a bug which caused the diskdump utility to run very slowly on devicesusing Fusion MPT has been resolved.SL 4.x SRPMS:kernel-2.6.9-67.0.1.EL.src.rpm i386:kernel-2.6.9-67.0.1.EL.i686.rpmkernel-devel-2.6.9-67.0.1.EL.i686.rpmkernel-doc-2.6.9-67.0.1.EL.noarch.rpmkernel-hugemem-2.6.9-67.0.1.EL.i686.rpmkernel-hugemem-devel-2.6.9-67.0.1.EL.i686.rpmkernel-smp-2.6.9-67.0.1.EL.i686.rpmkernel-smp-devel-2.6.9-67.0.1.EL.i686.rpmkernel-xenU-2.6.9-67.0.1.EL.i686.rpmkernel-xenU-devel-2.6.9-67.0.1.EL.i686.rpm Dependancies:cman-kernel-2.6.9-53.6.i686.rpmcman-kernel-hugemem-2.6.9-53.6.i686.rpmcman-kernel-smp-2.6.9-53.6.i686.rpmcman-kernel-xenU-2.6.9-53.6.i686.rpmcman-kernheaders-2.6.9-53.6.i686.rpmcmirror-kernel-2.6.9-38.6.i686.rpmcmirror-kernel-hugemem-2.6.9-38.6.i686.rpmcmirror-kernel-smp-2.6.9-38.6.i686.rpmcmirror-kernel-xenU-2.6.9-38.6.i686.rpmdlm-kernel-2.6.9-52.3.i686.rpmdlm-kernel-hugemem-2.6.9-52.3.i686.rpmdlm-kernel-smp-2.6.9-52.3.i686.rpmdlm-kernel-xenU-2.6.9-52.3.i686.rpmdlm-kernheaders-2.6.9-52.3.i686.rpmGFS-kernel-2.6.9-75.10.i686.rpmGFS-kernel-hugemem-2.6.9-75.10.i686.rpmGFS-kernel-smp-2.6.9-75.10.i686.rpmGFS-kernel-xenU-2.6.9-75.10.i686.rpmGFS-kernheaders-2.6.9-75.10.i686.rpmgnbd-kernel-2.6.9-10.30.i686.rpmgnbd-kernel-hugemem-2.6.9-10.30.i686.rpmgnbd-kernel-smp-2.6.9-10.30.i686.rpmgnbd-kernel-xenU-2.6.9-10.30.i686.rpmgnbd-kernheaders-2.6.9-10.30.i686.rpmkernel-module-fuse-2.6.9-67.0.1.EL-2.5.3-1.el4_6.i686.rpmkernel-module-fuse-2.6.9-67.0.1.ELhugemem-2.5.3-1.el4_6.i686.rpmkernel-module-fuse-2.6.9-67.0.1.ELsmp-2.5.3-1.el4_6.i686.rpmkernel-module-fuse-2.6.9-67.0.1.ELxenU-2.5.3-1.el4_6.i686.rpmkernel-module-ipw3945-2.6.9-67.0.1.EL-1.1.0-1.SL4.i686.rpmkernel-module-ipw3945-2.6.9-67.0.1.ELhugemem-1.1.0-1.SL4.i686.rpmkernel-module-ipw3945-2.6.9-67.0.1.ELsmp-1.1.0-1.SL4.i686.rpmkernel-module-ipw3945-2.6.9-67.0.1.ELxenU-1.1.0-1.SL4.i686.rpmkernel-module-madwifi-2.6.9-67.0.1.EL-0.9.3.1-10.sl4.i686.rpmkernel-module-madwifi-2.6.9-67.0.1.ELhugemem-0.9.3.1-10.sl4.i686.rpmkernel-module-madwifi-2.6.9-67.0.1.ELsmp-0.9.3.1-10.sl4.i686.rpmkernel-module-madwifi-hal-2.6.9-67.0.1.EL-0.9.3.1-10.sl4.i686.rpmkernel-module-madwifi-hal-2.6.9-67.0.1.ELhugemem-0.9.3.1-10.sl4.i686.rpmkernel-module-madwifi-hal-2.6.9-67.0.1.ELsmp-0.9.3.1-10.sl4.i686.rpmkernel-module-ndiswrapper-2.6.9-67.0.1.EL-1.41-1.SL.i686.rpmkernel-module-ndiswrapper-2.6.9-67.0.1.ELhugemem-1.41-1.SL.i686.rpmkernel-module-ndiswrapper-2.6.9-67.0.1.ELsmp-1.41-1.SL.i686.rpmkernel-module-ndiswrapper-2.6.9-67.0.1.ELxenU-1.41-1.SL.i686.rpmkernel-module-openafs-2.6.9-67.0.1.EL-1.4.4-46.SL4.i686.rpmkernel-module-openafs-2.6.9-67.0.1.ELhugemem-1.4.4-46.SL4.i686.rpmkernel-module-openafs-2.6.9-67.0.1.ELsmp-1.4.4-46.SL4.i686.rpmkernel-module-openafs-2.6.9-67.0.1.ELxenU-1.4.4-46.SL4.i686.rpmkernel-module-r1000-2.6.9-67.0.1.EL-2.2-2.SL4x.i686.rpmkernel-module-r1000-2.6.9-67.0.1.ELhugemem-2.2-2.SL4x.i686.rpmkernel-module-r1000-2.6.9-67.0.1.ELsmp-2.2-2.SL4x.i686.rpmkernel-module-r1000-2.6.9-67.0.1.ELxenU-2.2-2.SL4x.i686.rpm x86_64:kernel-2.6.9-67.0.1.EL.x86_64.rpmkernel-devel-2.6.9-67.0.1.EL.x86_64.rpmkernel-doc-2.6.9-67.0.1.EL.noarch.rpmkernel-largesmp-2.6.9-67.0.1.EL.x86_64.rpmkernel-largesmp-devel-2.6.9-67.0.1.EL.x86_64.rpmkernel-smp-2.6.9-67.0.1.EL.x86_64.rpmkernel-smp-devel-2.6.9-67.0.1.EL.x86_64.rpmkernel-xenU-2.6.9-67.0.1.EL.x86_64.rpmkernel-xenU-devel-2.6.9-67.0.1.EL.x86_64.rpm Dependancies:cman-kernel-2.6.9-53.6.x86_64.rpmcman-kernel-largesmp-2.6.9-53.6.x86_64.rpmcman-kernel-smp-2.6.9-53.6.x86_64.rpmcman-kernel-xenU-2.6.9-53.6.x86_64.rpmcman-kernheaders-2.6.9-53.6.x86_64.rpmcmirror-kernel-2.6.9-38.6.x86_64.rpmcmirror-kernel-largesmp-2.6.9-38.6.x86_64.rpmcmirror-kernel-smp-2.6.9-38.6.x86_64.rpmcmirror-kernel-xenU-2.6.9-38.6.x86_64.rpmdlm-kernel-2.6.9-52.3.x86_64.rpmdlm-kernel-largesmp-2.6.9-52.3.x86_64.rpmdlm-kernel-smp-2.6.9-52.3.x86_64.rpmdlm-kernel-xenU-2.6.9-52.3.x86_64.rpmdlm-kernheaders-2.6.9-52.3.x86_64.rpmGFS-kernel-2.6.9-75.10.x86_64.rpmGFS-kernel-largesmp-2.6.9-75.10.x86_64.rpmGFS-kernel-smp-2.6.9-75.10.x86_64.rpmGFS-kernel-xenU-2.6.9-75.10.x86_64.rpmGFS-kernheaders-2.6.9-75.10.x86_64.rpmgnbd-kernel-2.6.9-10.30.x86_64.rpmgnbd-kernel-largesmp-2.6.9-10.30.x86_64.rpmgnbd-kernel-smp-2.6.9-10.30.x86_64.rpmgnbd-kernel-xenU-2.6.9-10.30.x86_64.rpmgnbd-kernheaders-2.6.9-10.30.x86_64.rpmkernel-module-fuse-2.6.9-67.0.1.EL-2.5.3-1.el4.x86_64.rpmkernel-module-fuse-2.6.9-67.0.1.ELlargesmp-2.5.3-1.el4.x86_64.rpmkernel-module-fuse-2.6.9-67.0.1.ELsmp-2.5.3-1.el4.x86_64.rpmkernel-module-fuse-2.6.9-67.0.1.ELxenU-2.5.3-1.el4.x86_64.rpmkernel-module-ipw3945-2.6.9-67.0.1.EL-1.1.0-1.SL4.x86_64.rpmkernel-module-ipw3945-2.6.9-67.0.1.ELlargesmp-1.1.0-1.SL4.x86_64.rpmkernel-module-ipw3945-2.6.9-67.0.1.ELsmp-1.1.0-1.SL4.x86_64.rpmkernel-module-ipw3945-2.6.9-67.0.1.ELxenU-1.1.0-1.SL4.x86_64.rpmkernel-module-madwifi-2.6.9-67.0.1.EL-0.9.3.1-10.sl4.x86_64.rpmkernel-module-madwifi-2.6.9-67.0.1.ELlargesmp-0.9.3.1-10.sl4.x86_64.rpmkernel-module-madwifi-2.6.9-67.0.1.ELsmp-0.9.3.1-10.sl4.x86_64.rpmkernel-module-madwifi-hal-2.6.9-67.0.1.EL-0.9.3.1-10.sl4.x86_64.rpmkernel-module-madwifi-hal-2.6.9-67.0.1.ELlargesmp-0.9.3.1-10.sl4.x86_64.rpmkernel-module-madwifi-hal-2.6.9-67.0.1.ELsmp-0.9.3.1-10.sl4.x86_64.rpmkernel-module-ndiswrapper-2.6.9-67.0.1.EL-1.41-1.SL.x86_64.rpmkernel-module-ndiswrapper-2.6.9-67.0.1.ELlargesmp-1.41-1.SL.x86_64.rpmkernel-module-ndiswrapper-2.6.9-67.0.1.ELsmp-1.41-1.SL.x86_64.rpmkernel-module-ndiswrapper-2.6.9-67.0.1.ELxenU-1.41-1.SL.x86_64.rpmkernel-module-openafs-2.6.9-67.0.1.EL-1.4.4-46.SL4.x86_64.rpmkernel-module-openafs-2.6.9-67.0.1.ELlargesmp-1.4.4-46.SL4.x86_64.rpmkernel-module-openafs-2.6.9-67.0.1.ELsmp-1.4.4-46.SL4.x86_64.rpmkernel-module-openafs-2.6.9-67.0.1.ELxenU-1.4.4-46.SL4.x86_64.rpmkernel-module-r1000-2.6.9-67.0.1.EL-2.2-2.SL4x.x86_64.rpmkernel-module-r1000-2.6.9-67.0.1.ELlargesmp-2.2-2.SL4x.x86_64.rpmkernel-module-r1000-2.6.9-67.0.1.ELsmp-2.2-2.SL4x.x86_64.rpmkernel-module-r1000-2.6.9-67.0.1.ELxenU-2.2-2.SL4x.x86_64.rpm-Connie Sieh-Troy Dawson