Lucene search

K
redhatRedHatRHSA-2007:0012
HistoryJan 17, 2007 - 12:00 a.m.

(RHSA-2007:0012) Moderate: kernel security update

2007-01-1700:00:00
access.redhat.com
16

0.056 Low

EPSS

Percentile

93.3%

The Linux kernel handles the basic functions of the operating system.

These new kernel packages contain fixes for the security issues described
below:

  • a flaw in the ATM subsystem affecting systems with installed ATM hardware
    and configured ATM support that allowed a remote user to cause a denial of
    service (panic) by accessing socket buffer memory after it has been freed
    (CVE-2006-4997, Moderate)

  • a flaw in the DVD handling of the CDROM driver that could be used
    together with a custom built USB device to gain root privileges
    (CVE-2006-2935, Moderate)

In addition to the security issues described above, the following bugs are
also addressed:

  • a potential overflow condition when reading /proc/devices
  • a potential page corruption bug in /proc/kcore

All Red Hat Enterprise Linux 2.1 users are advised to upgrade their kernels
to these updated packages, which contain backported fixes to correct these
issues.