UbuntuUpdates.org

Security vulnerability fixes on all kernels

2.6.24, 2.6.27, 2.6.28 and 2.6.31 all got updates on Wednesday night February 3rd, with patches for around 10 CVEs. The new Karmic kernel is 2.6.31-19.

Here is the list of CVE notices:

CVE-2009-4536 drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that exceed the MTU by processing
CVE-2009-4538 drivers/net/e1000e/netdev.c in the e1000e driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that e
CVE-2009-4020 Stack-based buffer overflow in the hfs subsystem in the Linux kernel 2.6.32 allows remote attackers to have an unspecified impact via a crafted Hierar
CVE-2009-4031 The do_insn_fetch function in arch/x86/kvm/emulate.c in the x86 emulator in the KVM subsystem in the Linux kernel before 2.6.32-rc8-next-20091125 trie
CVE-2009-4308 The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to ca
CVE-2009-4138 drivers/firewire/ohci.c in the Linux kernel before 2.6.32-git9, when packet-per-buffer mode is used, allows local users to cause a denial of service (
CVE-2009-4141 Use-after-free vulnerability in the fasync_helper function in fs/fcntl.c in the Linux kernel before 2.6.33-rc4-git1 allows local users to gain privile
CVE-2010-0006 The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel ...
CVE-2010-0003 The print_fatal_signal function in kernel/signal.c in the Linux kernel ...
CVE-2010-0007 net/bridge/netfilter/ebtables.c in the ebtables module in the ...

The list of kernel versions per distribution are available on the linux page.

posted at 2010-02-04 05:50:45 UTC by uupdates

Comments

blog comments powered by Disqus

<< Back to blog



About   -   Send Feedback to @ubuntu_updates