Upstream information
Description
The install_special_mapping function in mm/mmap.c in the Linux kernel before 2.6.37-rc6 does not make an expected security_file_mmap function call, which allows local users to bypass intended mmap_min_addr restrictions and possibly conduct NULL pointer dereference attacks via a crafted assembly-language application.NVD CVSS v2 Base Score: 2.1 (AV:L/AC:L/Au:N/C:N/I:P/A:N)
Novell/SUSE information
Novell Bugzilla entry: 658720 SUSE Security Advisories:- SUSE-SA:2011:012, published Tue, 08 Mar 2011 15:00:00 +0000
- SUSE-SA:2011:017, published Mon, 18 Apr 2011 11:00:00 +0000
- SUSE-SA:2011:020, published Thu, 28 Apr 2011 11:00:00 +0000
- openSUSE-SU-2011:0159-1, published Tue, 8 Mar 2011 19:08:19 +0100 (CET)
- openSUSE-SU-2011:0346-1, published Fri, 15 Apr 2011 22:02:25 +0200 (CEST)
- openSUSE-SU-2011:0399-1, published Thu, 28 Apr 2011 04:08:10 +0200 (CEST)
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 4044 |
| openSUSE 11.2 |
| |
| openSUSE 11.2 |
| |
| SLE 11 SP1 DEBUGINFO |
| sle11-sp1-hae.s390x sles11-sp1.s390x SAT Patch Nr: 4042 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sle11-sp1-hae.s390x sles11-sp1.s390x SAT Patch Nr: 4042 |
| SUSE Linux Enterprise Server 11 SP1 |
| sle11-sp1-hae.s390x sles11-sp1.s390x SAT Patch Nr: 4042 |
| SLE 11 SP1 DEBUGINFO |
| sle11-sp1-hae.ppc sles11-sp1.ppc SAT Patch Nr: 4041 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sle11-sp1-hae.ppc sles11-sp1.ppc SAT Patch Nr: 4041 |
| SUSE Linux Enterprise Server 11 SP1 |
| sle11-sp1-hae.ppc sles11-sp1.ppc SAT Patch Nr: 4041 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 4045 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 4047 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 4048 |
| SUSE Linux Enterprise Real Time 11 SP1 |
| slert11-sp1.x86-64 SAT Patch Nr: 5075 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1.ia64 sle11-sp1-hae.ia64 SAT Patch Nr: 4040 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sles11-sp1.ia64 sle11-sp1-hae.ia64 SAT Patch Nr: 4040 |
| SUSE Linux Enterprise Server 11 SP1 |
| sles11-sp1.ia64 sle11-sp1-hae.ia64 SAT Patch Nr: 4040 |
| SLE 11 SP1 DEBUGINFO |
| sled11-sp1.x86 sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 SAT Patch Nr: 4039 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sled11-sp1.x86 sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 SAT Patch Nr: 4039 |
| SUSE Linux Enterprise Desktop 11 SP1 |
| sled11-sp1.x86 sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 SAT Patch Nr: 4039 |
| SUSE Linux Enterprise Server 11 SP1 for VMware |
| sled11-sp1.x86 sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 SAT Patch Nr: 4039 |
| SUSE Linux Enterprise Server 11 SP1 |
| sled11-sp1.x86 sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 SAT Patch Nr: 4039 |
| SLE 11 SP1 DEBUGINFO |
| sle11-sp1-hae.x86-64 sled11-sp1.x86-64 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 4043 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sle11-sp1-hae.x86-64 sled11-sp1.x86-64 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 4043 |
| SUSE Linux Enterprise Desktop 11 SP1 |
| sle11-sp1-hae.x86-64 sled11-sp1.x86-64 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 4043 |
| SUSE Linux Enterprise Server 11 SP1 for VMware |
| sle11-sp1-hae.x86-64 sled11-sp1.x86-64 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 4043 |
| SUSE Linux Enterprise Server 11 SP1 |
| sle11-sp1-hae.x86-64 sled11-sp1.x86-64 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 4043 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 4046 |
| openSUSE 11.3 |
| |
| openSUSE 11.3 |
|
