oss-sec mailing list archives
CVE-2011-4348 kernel: incomplete fix for CVE-2011-2482
From: Eugene Teo <eugene () redhat com>
Date: Mon, 05 Mar 2012 10:16:53 +0800
When testing [CVE-2011-2482] with SELinux disabled (haven't triggered panic on patched kernel with selinux on), the reproducer run after regular user causes soft lookups and the machine becomes completely unresponsive on patched kernel. Target machine was unresponsive after remote part of reproducer (con) killed. Target with patched kernel needed to be rebooted to start working regularly. Upstream commit: http://git.kernel.org/linus/ae53b5bd77719fed58086c5be60ce4f22bffe1c6 Reference: https://bugzilla.redhat.com/CVE-2011-4348 Thanks, Eugene
Current thread:
- CVE-2011-4348 kernel: incomplete fix for CVE-2011-2482 Eugene Teo (Mar 04)