Vulnwatch mailing list archives

Linux 2.4 kernel ioperm vuln *is* for 2.4


From: Rain Forest Puppy <rfp () vulnwatch org>
Date: Thu, 22 May 2003 19:57:56 +0000 (GMT)


We've received a few emails asking to clarify if the ioperm bug was for
2.5 (like it mentioned in the referenced post), or 2.4 like I mentioned in
the title.

Red Hat and EnGarde have released advisories and updated 2.4 kernels with
ioperm patches. CVE has also entered it as CAN-2003-0246, although it is
sourced from the Red Hat and EnGarde advisories.  That leads to conclude
it's a bug in 2.4; otherwise what the hell are Red Hat and EnGarde
updating/patching?

- rfp


Current thread: