Details
fs/ecryptfs/inode.c in the eCryptfs subsystem in the Linux kernel before 2.6.28.1 allows local users to cause a denial of service (fault or memory corruption), or possibly have unspecified other impact, via a readlink call that results in an error, leading to use of a -1 return value as an array index.Novell Bugzilla entry: 470942 SUSE Security Advisories:
- SUSE-SA:2009:010, published Thu, 26 Feb 2009 16:00:00 +0000
- SUSE-SA:2009:010 , published Thu, 26 Feb 2009 16:00:00 +0000
- SUSE-SA:2009:030 , published Mon, 08 Jun 2009 18:00:00 +0000
- SUSE-SA:2009:031 , published Mon, 09 Jun 2009 09:00:00 +0000
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| openSUSE 11.0 |
| SAT Patch Nr: 951 |
| openSUSE 11.0 |
| SAT Patch Nr: 951 |
| SUSE Linux Enterprise Server RT Solution 10 for x86 |
| sles10-sp2. x86-64 sles10-sp2. x86 ZYPP Patch Nr: 6183 |
| SUSE Linux Enterprise Server RT Solution 10 for AMD64 and Intel EM64T |
| sles10-sp2. x86-64 sles10-sp2. x86 ZYPP Patch Nr: 6183 |
| openSUSE 10.3 |
| |
| openSUSE 11.1 |
| SAT Patch Nr: 559 |
| openSUSE 11.1 |
| SAT Patch Nr: 559 |