PT-2001-2687 · Red Hat+2 · Losetup+4
Publicado
1970-01-01
·
Atualizado
2016-12-08
·
CVE-2001-1397
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Debian GNU/Linux kernel-image-2.2.19 versions prior to 2.2.19
Red Hat Linux mount versions prior to 2.10r-5
Red Hat Linux losetup versions prior to 2.10r-5
Red Hat Linux nfs-utils versions prior to 0.3.1
Description
The issue affects the System V shared memory implementation for Linux kernel before 2.2.19, allowing attackers to modify recently freed memory. This can lead to a violation of confidentiality, integrity, and availability of protected information. The exploitation of these vulnerabilities can be carried out remotely.
Recommendations
For Debian GNU/Linux kernel-image-2.2.19 versions prior to 2.2.19, update to a version 2.2.19 or later.
For Red Hat Linux mount versions prior to 2.10r-5, update to version 2.10r-5 or later.
For Red Hat Linux losetup versions prior to 2.10r-5, update to version 2.10r-5 or later.
For Red Hat Linux nfs-utils versions prior to 0.3.1, update to version 0.3.1 or later.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Debian
Linux Kernel
Losetup
Mount
Nfs-Utils