PT-2001-2684 · Red Hat+2 · Losetup+4

Published

1970-01-01

·

Updated

2016-12-08

·

CVE-2001-1394

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Debian GNU/Linux kernel-image-2.2.19 versions prior to 2.2.19 Red Hat Linux mount versions prior to 2.10r-5 Red Hat Linux losetup versions prior to 2.10r-5 Red Hat Linux nfs-utils versions prior to 0.3.1
Description The issue affects multiple packages in Debian GNU/Linux and Red Hat Linux, allowing for remote exploitation that may lead to a breach of confidentiality, integrity, and availability of protected information. A signedness error in the getsockopt and setsockopt functions for Linux kernel versions before 2.2.19 enables local users to cause a denial of service. The vulnerabilities can be exploited remotely.
Recommendations For Debian GNU/Linux kernel-image-2.2.19 versions prior to 2.2.19: Update to a version later than 2.2.19 to resolve the issue. For Red Hat Linux mount versions prior to 2.10r-5: Update to version 2.10r-5 or later to resolve the issue. For Red Hat Linux losetup versions prior to 2.10r-5: Update to version 2.10r-5 or later to resolve the issue. For Red Hat Linux nfs-utils versions prior to 0.3.1: Update to version 0.3.1 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-03682
BDU:2015-03683
BDU:2015-03684
BDU:2015-03685
BDU:2015-03686
BDU:2015-03687
BDU:2015-03688
BDU:2015-03689
BDU:2015-03690
BDU:2015-03691
BDU:2015-03692
BDU:2015-03693
BDU:2015-03694
BDU:2015-03695
BDU:2015-03696
BDU:2015-03697
BDU:2015-03698
BDU:2015-03699
BDU:2015-03700
BDU:2015-03701
BDU:2015-03702
BDU:2015-03703
BDU:2015-03704
BDU:2015-03705
BDU:2015-03706
BDU:2015-03707
BDU:2015-03708
BDU:2015-03709
BDU:2015-08156
BDU:2015-08157
BDU:2015-08165
BDU:2015-08166
BDU:2015-08173
CVE-2001-1394

Affected Products

Debian
Linux Kernel
Losetup
Mount
Nfs-Utils