oss-sec mailing list archives

CVE-2011-4348 kernel: incomplete fix for CVE-2011-2482


From: Eugene Teo <eugene () redhat com>
Date: Mon, 05 Mar 2012 10:16:53 +0800

When testing [CVE-2011-2482] with SELinux disabled (haven't triggered
panic on patched kernel with selinux on), the reproducer run after
regular user causes soft lookups and the machine becomes completely
unresponsive on patched kernel. Target machine was unresponsive after
remote part of reproducer (con) killed. Target with patched kernel
needed to be rebooted to start working regularly.

Upstream commit:
http://git.kernel.org/linus/ae53b5bd77719fed58086c5be60ce4f22bffe1c6

Reference:
https://bugzilla.redhat.com/CVE-2011-4348

Thanks, Eugene


Current thread: