Personal tools
     DOCUMENTATION

Advisories:rPSA-2006-0087

From rPath Wiki

Jump to: navigation, search

rPath Security Advisory 2006-0087-1

Published: 2006-05-31

Products

  • rPath Linux 1

Rating

Minor

Exposure Level Classification

Local Non-deterministic Information Exposure

Updated Versions

  • kernel=conary.rpath.com@rpl:1/2.6.16.19-1-0.1

rPath Issue Tracking System

References

Description

Previous versions of the kernel package have a small information leak
that exposes 6 bytes of arbitrary kernel memory when the getsockopt
system call is called with the SO_ORIGINAL_DST argument. An attacking
program cannot choose which 6 bytes of memory are exposed.

Copyright 2006 rPath, Inc. This file is distributed under the terms of the MIT License. A copy is available at http://www.rpath.com/permanent/mit-license.html