All Ubuntu package versions


AllRaringQuantalPreciseOneiricNattyLucidHardyAll PPAs
DashboardRecent Search QueriesSearch Statistics
Alphabetical listSearchBugs
Comments

Package "linux-doc-2.6.24"

Name: linux-doc-2.6.24

Description:

Linux kernel specific documentation for version 2.6.24
This package provides the various readme's in the 2.6.24 kernel
Documentation/ subdirectory: these typically contain kernel-specific
installation notes for some drivers for example. See
/usr/share/doc/linux-doc-2.6.24/Documentation/00-INDEX for a list of what
is contained in each file. Please read the Changes file, as it contains
information about the problems, which may result by upgrading your
kernel.

Latest version: 2.6.24-32.107
Release: hardy (8.04)
Level: updates
Repository: main
Head package: linux

Links

Save this URL for the latest version of "linux-doc-2.6.24": http://www.ubuntuupdates.org/linux-doc-2.6.24

All versions of this package Bug fixes
List of files in package Repository home page for package

Download "linux-doc-2.6.24"

All arch deb package APT INSTALL

Other versions of "linux-doc-2.6.24" in Hardy

RepositoryAreaVersion
base main 2.6.24-16.30
security main 2.6.24-32.107

Change Log

Version: 2.6.24-28.80 2010-10-20 01:01:13 UTC

linux (2.6.24-28.80) hardy-security; urgency=low

  [Upstream Kernel Changes]

  * v4l: disable dangerous buggy compat function
    - CVE-2010-2963
  * xfs: prevent swapext from operating on write-only files
    - CVE-2010-2226
  * cifs: Fix a kernel BUG with remote OS/2 server (try #3)
    - CVE-2010-2248
  * nfsd4: bug in read_buf
    - CVE-2010-2521
  * GFS2: rename causes kernel Oops
    - CVE-2010-2798
  * net sched: fix some kernel memory leaks
    - CVE-2010-2942
  * jfs: don't allow os2 xattr namespace overlap with others
    - CVE-2010-2946
  * irda: Correctly clean up self->ias_obj on irda_bind() failure.
    - CVE-2010-2954
  * ext4: consolidate in_range() definitions
    - CVE-2010-3015
  * aio: check for multiplication overflow in do_io_submit
    - CVE-2010-3067
  * xfs: prevent reading uninitialized stack memory
    - CVE-2010-3078
  * ALSA: seq/oss - Fix double-free at error path of snd_seq_oss_open()
    - CVE-2010-3080
  * rose: Fix signedness issues wrt. digi count.
    - CVE-2010-3310
  * sctp: Do not reset the packet during sctp_packet_config().
    - CVE-2010-3432
  * Fix pktcdvd ioctl dev_minor range check
    - CVE-2010-3437
  * ALSA: prevent heap corruption in snd_ctl_new()
    - CVE-2010-3442
  * net sched: fix kernel leak in act_police
    - CVE-2010-3477
  * Fix out-of-bounds reading in sctp_asoc_get_hmac()
    - CVE-2010-3705
  * remove dashes in git commands for compatibility with later build
    environments

 -- Steve Conklin Wed, 06 Oct 2010 16:08:52 +0100

Source diff to previous version
CVE-2010-3705 sctp out-of-bounds issue
CVE-2010-3477 The tcf_act_police_dump function in net/sched/act_police.c in the actions implementation in the network queueing functionality in the Linux kernel bef
CVE-2010-3442 Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users t
CVE-2010-3437 Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users t
CVE-2010-3432 sctp: Do not reset the packet during sctp_packet_config()
CVE-2010-3310 Multiple integer signedness errors in net/rose/af_rose.c in the Linux kernel before 2.6.36-rc5-next-20100923 allow local users to cause a denial of se
CVE-2010-3080 Double free vulnerability in the snd_seq_oss_open function in sound/core/seq/oss/seq_oss_init.c in the Linux kernel before 2.6.36-rc4 might allow loca
CVE-2010-3078 The xfs_ioc_fsgetxattr function in fs/xfs/linux-2.6/xfs_ioctl.c in the Linux kernel before 2.6.36-rc4 does not initialize a certain structure member,
CVE-2010-3067 Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of
CVE-2010-3015 Integer overflow in the ext4_ext_get_blocks function in fs/ext4/extents.c in the Linux kernel before 2.6.34 allows local users to cause a denial of se
CVE-2010-2954 The irda_bind function in net/irda/af_irda.c in the Linux kernel before 2.6.36-rc3-next-20100901 does not properly handle failure of the irda_open_tsa
CVE-2010-2946 fs/jfs/xattr.c in the Linux kernel before 2.6.35.2 does not properly handle a certain legacy format for storage of extended attributes, which might al
CVE-2010-2942 The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initialize certain structure
CVE-2010-2798 The gfs2_dirent_find_space function in fs/gfs2/dir.c in the Linux kernel before 2.6.35 uses an incorrect size value in calculations associated with se
CVE-2010-2521 Multiple buffer overflows in fs/nfsd/nfs4xdr.c in the XDR implementation in the NFS server in the Linux kernel before 2.6.34-rc6 allow remote attacker
CVE-2010-2248 fs/cifs/cifssmb.c in the CIFS implementation in the Linux kernel before 2.6.34-rc4 allows remote attackers to cause a denial of service (panic) via an
CVE-2010-2226 The xfs_swapext function in fs/xfs/xfs_dfrag.c in the Linux kernel before 2.6.35 does not properly check the file descriptors passed to the SWAPEXT io
CVE-2010-2963 RESERVED

Version: 2.6.24-28.79 2010-09-17 19:02:17 UTC

linux (2.6.24-28.79) hardy-security; urgency=low

  [Upstream Kernel Changes]

  * compat: Make compat_alloc_user_space() incorporate the access_ok()
    - CVE-2010-3081

 -- Stefan Bader Thu, 16 Sep 2010 10:20:48 +0200

Source diff to previous version
CVE-2010-3081 64-bit Compatibility Mode Stack Pointer Underflow

Version: 2.6.24-28.77 2010-08-26 20:01:27 UTC

linux (2.6.24-28.77) hardy-security; urgency=low

  [Stefan Bader]

  * mm: Use helper to find real vma with stack guard page
    - LP: #620994
    - CVE-2010-2240
  * mm: Do not assume ENOMEM when looking at a split stack vma
    - LP: #620994
    - CVE-2010-2240

 -- Stefan Bader Wed, 25 Aug 2010 12:54:28 +0000

Source diff to previous version
CVE-2010-2240 mm: keep a guard page below a grow-down stack segment
620994 linux: "linux 2.6.24-28.75 breaks xen flavours (xen kernel bug: 'kernel BUG at /build/buildd/linux-2.6.24/debian/build/custom-source-xen/mm/memory.c:2

Version: 2.6.24-28.75 2010-08-20 00:02:36 UTC

linux (2.6.24-28.75) hardy-security; urgency=low

  [Upstream Kernel Changes]

  * mm: keep a guard page below a grow-down stack segment
    - CVE-2010-2240
  * mm: fix missing page table unmap for stack guard page failure case
    - CVE-2010-2240
  * mm: fix page table unmap for stack guard page properly
    - CVE-2010-2240
  * mm: fix up some user-visible effects of the stack guard page
    - CVE-2010-2240
  * x86: don't send SIGBUS for kernel page faults
    - CVE-2010-2240
  * mm: pass correct mm when growing stack
    - CVE-2010-2240
  * OPENVZ: Fixup patches to memory.c and mlock.c
    - CVE-2010-2240

 -- Stefan Bader Wed, 18 Aug 2010 11:27:41 +0200

Source diff to previous version
CVE-2010-2240 mm: keep a guard page below a grow-down stack segment

Version: 2.6.24-28.73 2010-08-05 01:01:48 UTC

linux (2.6.24-28.73) hardy-security; urgency=low

  [Upstream Kernel Changes]

  * sctp: Fix skb_over_panic resulting from multiple invalid parameter
    errors (CVE-2010-1173) (v4)
    - CVE-2010-1173
  * sctp: fix append error cause to ERROR chunk correctly
    - CVE-2010-1173
  * GFS2: Fix writing to non-page aligned gfs2_quota structures
    - CVE-2010-1436
  * KEYS: find_keyring_by_name() can gain access to a freed keyring
    - CVE-2010-1437
  * sparc64: Fix sun4u execute bit check in TSB I-TLB load.
    - CVE-2010-1451
  * GFS2: Fix permissions checking for setflags ioctl()
    - CVE-2010-1641
  * nfsd: fix vm overcommit crash
    - CVE-2010-1643
  * nfsd: fix vm overcommit crash fix #2
    - CVE-2008-7256
  * ecryptfs: Bugfix for error related to ecryptfs_hash_buckets
    - CVE-2010-2492

 -- Stefan Bader Tue, 20 Jul 2010 18:21:57 +0200

CVE-2010-1173 The sctp_process_unk_param function in net/sctp/sm_make_chunk.c in the Linux kernel 2.6.33.3 and earlier, when SCTP is enabled, allows remote attacker
CVE-2010-1436 gfs2 in the Linux kernel 2.6.18, and possibly other versions, does not properly handle when the gfs2_quota struct occupies two separate pages, which a
CVE-2010-1437 Race condition in the find_keyring_by_name function in security/keys/keyring.c in the Linux kernel 2.6.34-rc5 and earlier allows local users to cause
CVE-2010-1451 The TSB I-TLB load implementation in arch/sparc/kernel/tsb.S in the Linux kernel before 2.6.33 on the SPARC platform does not properly obtain the valu
CVE-2010-1641 The do_gfs2_set_flags function in fs/gfs2/file.c in the Linux kernel before 2.6.34-git10 does not verify the ownership of a file, which allows local u
CVE-2010-1643 mm/shmem.c in the Linux kernel before 2.6.28-rc3, when strict overcommit is enabled, does not properly handle the export of shmemfs objects by knfsd,
CVE-2008-7256 mm/shmem.c in the Linux kernel before 2.6.28-rc8, when strict overcommit is enabled and CONFIG_SECURITY is disabled, does not properly handle the expo
CVE-2010-2492 RESERVED



About   -   Changelog   -   Send Feedback
Site Meter