Vulnerability Scanning Solutions, LLC.
Home
Our Process
Residential
Corporate
What We Scan For
Sample Report
Client List
Terms
Contact Us
What We Scan For
Family: Debian Local Security Checks --> Category: infos

[DSA413] DSA-413-2 linux-kernel-2.4.18 Vulnerability Scan


Vulnerability Scan Summary
DSA-413-2 linux-kernel-2.4.18

Detailed Explanation for this Vulnerability Test

Paul Starzetz href="http://isec.pl/vulnerabilities/isec-0013-mremap.txt"discovered a flaw in bounds checking in mremap() in the
Linux kernel (present in version 2.4.x and 2.6.x) which may allow
a local attacker to gain root rights.
Version 2.2 is not affected by this bug, since it doesn't support the
MREMAP_FIXED flag (as href="http://seclists.org/lists/fulldisclosure/2004/Jan/0095.html"clarified later).
For the stable distribution (woody) this problem has been fixed in
kernel-source version 2.4.18-14.1 and kernel-images versions
2.4.18-12.1 and 2.4.18-5woody6 (bf) for the i386 architecture.
For the unstable distribution (sid) this problem will be fixed soon
with newly uploaded packages.
We recommend that you upgrade your kernel packages. This problem has
been fixed in the upstream version 2.4.24 as well.


Solution : http://www.debian.org/security/2004/dsa-413
Threat Level: High

Click HERE for more information and discussions on this network vulnerability scan.

VSS, LLC.

P.O. Box 827051

Pembroke Pines, FL 33082-7051

Vulnerability Scanning Solutions, LLC.