Upstream information
Description
The user_update function in security/keys/user_defined.c in the Linux kernel 2.6 allows local users to cause a denial of service (NULL pointer dereference and kernel oops) via vectors related to a user-defined key and "updating a negative key into a fully instantiated key."NVD CVSS v2 Base Score: 2.1 (AV:L/AC:L/Au:N/C:N/I:N/A:P)
Novell/SUSE information
Novell Bugzilla entry: 734056 SUSE Security Advisories:- SUSE-SU-2012:0153-1, published Mon, 6 Feb 2012 15:08:23 +0100 (CET)
- SUSE-SU-2012:0153-2, published Mon, 6 Feb 2012 23:08:27 +0100 (CET)
- SUSE-SU-2012:0364-1, published Wed, 14 Mar 2012 00:08:32 +0100 (CET)
- SUSE-SU-2012:1391-1, published Wed, 24 Oct 2012 09:08:54 +0200 (CEST)
- openSUSE-SU-2012:1439-1, published Mon, 5 Nov 2012 10:09:03 +0100 (CET)
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5726 |
| SUSE Linux Enterprise 10 SP4 DEBUGINFO for IBM POWER |
| sle10-sp4-sdk.ppc sles10-sp4-debuginfo.ppc sles10-sp4.ppc ZYPP Patch Nr: 8323 |
| SLE SDK 10 SP4 for IBM iSeries and IBM pSeries |
| sle10-sp4-sdk.ppc sles10-sp4-debuginfo.ppc sles10-sp4.ppc ZYPP Patch Nr: 8323 |
| SUSE Linux Enterprise Server 10 SP4 for IBM POWER |
| sle10-sp4-sdk.ppc sles10-sp4-debuginfo.ppc sles10-sp4.ppc ZYPP Patch Nr: 8323 |
| SUSE Linux Enterprise 10 SP4 DEBUGINFO for IPF |
| sles10-sp4.ia64 sles10-sp4-debuginfo.ia64 sle10-sp4-sdk.ia64 ZYPP Patch Nr: 8326 |
| SLE SDK 10 SP4 for IPF |
| sles10-sp4.ia64 sles10-sp4-debuginfo.ia64 sle10-sp4-sdk.ia64 ZYPP Patch Nr: 8326 |
| SUSE Linux Enterprise Server 10 SP4 for IPF |
| sles10-sp4.ia64 sles10-sp4-debuginfo.ia64 sle10-sp4-sdk.ia64 ZYPP Patch Nr: 8326 |
| SUSE Linux Enterprise Real Time 11 SP1 |
| slert11-sp1.x86-64 SAT Patch Nr: 5802 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1-vmware.x86-64 sled11-sp1.x86-64 sle11-sp1-hae.x86-64 sles11-sp1.x86-64 SAT Patch Nr: 5732 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sles11-sp1-vmware.x86-64 sled11-sp1.x86-64 sle11-sp1-hae.x86-64 sles11-sp1.x86-64 SAT Patch Nr: 5732 |
| SUSE Linux Enterprise Desktop 11 SP1 |
| sles11-sp1-vmware.x86-64 sled11-sp1.x86-64 sle11-sp1-hae.x86-64 sles11-sp1.x86-64 SAT Patch Nr: 5732 |
| SUSE Linux Enterprise Server 11 SP1 for VMware |
| sles11-sp1-vmware.x86-64 sled11-sp1.x86-64 sle11-sp1-hae.x86-64 sles11-sp1.x86-64 SAT Patch Nr: 5732 |
| SUSE Linux Enterprise Server 11 SP1 |
| sles11-sp1-vmware.x86-64 sled11-sp1.x86-64 sle11-sp1-hae.x86-64 sles11-sp1.x86-64 SAT Patch Nr: 5732 |
| SUSE Linux Enterprise 10 SP4 DEBUGINFO for IBM zSeries 64bit |
| sles10-sp4-debuginfo.s390x sles10-sp4.s390x ZYPP Patch Nr: 8328 |
| SUSE Linux Enterprise Server 10 SP4 for IBM zSeries 64bit |
| sles10-sp4-debuginfo.s390x sles10-sp4.s390x ZYPP Patch Nr: 8328 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 sled11-sp1.x86 SAT Patch Nr: 5723 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 sled11-sp1.x86 SAT Patch Nr: 5723 |
| SUSE Linux Enterprise Desktop 11 SP1 |
| sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 sled11-sp1.x86 SAT Patch Nr: 5723 |
| SUSE Linux Enterprise Server 11 SP1 for VMware |
| sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 sled11-sp1.x86 SAT Patch Nr: 5723 |
| SUSE Linux Enterprise Server 11 SP1 |
| sles11-sp1.x86 sle11-sp1-hae.x86 sles11-sp1-vmware.x86 sled11-sp1.x86 SAT Patch Nr: 5723 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5727 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1.ia64 sle11-sp1-hae.ia64 SAT Patch Nr: 5729 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sles11-sp1.ia64 sle11-sp1-hae.ia64 SAT Patch Nr: 5729 |
| SUSE Linux Enterprise Server 11 SP1 |
| sles11-sp1.ia64 sle11-sp1-hae.ia64 SAT Patch Nr: 5729 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5730 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1.ppc sle11-sp1-hae.ppc SAT Patch Nr: 5724 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sles11-sp1.ppc sle11-sp1-hae.ppc SAT Patch Nr: 5724 |
| SUSE Linux Enterprise Server 11 SP1 |
| sles11-sp1.ppc sle11-sp1-hae.ppc SAT Patch Nr: 5724 |
| SLE 11 SP1 DEBUGINFO |
| sle11-sp1-hae.s390x sles11-sp1.s390x SAT Patch Nr: 5725 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sle11-sp1-hae.s390x sles11-sp1.s390x SAT Patch Nr: 5725 |
| SUSE Linux Enterprise Server 11 SP1 |
| sle11-sp1-hae.s390x sles11-sp1.s390x SAT Patch Nr: 5725 |
| SUSE Linux Enterprise Desktop 10 SP4 for x86 |
| sle10-sp4-sdk.x86 sled10-sp4.x86 sles10-sp4.x86 sles10-sp4-debuginfo.x86 ZYPP Patch Nr: 8325 |
| SUSE Linux Enterprise 10 SP4 DEBUGINFO for x86 |
| sle10-sp4-sdk.x86 sled10-sp4.x86 sles10-sp4.x86 sles10-sp4-debuginfo.x86 ZYPP Patch Nr: 8325 |
| SLE SDK 10 SP4 for x86 |
| sle10-sp4-sdk.x86 sled10-sp4.x86 sles10-sp4.x86 sles10-sp4-debuginfo.x86 ZYPP Patch Nr: 8325 |
| SUSE Linux Enterprise Server 10 SP4 for x86 |
| sle10-sp4-sdk.x86 sled10-sp4.x86 sles10-sp4.x86 sles10-sp4-debuginfo.x86 ZYPP Patch Nr: 8325 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5731 |
| SUSE Linux Enterprise Desktop 10 SP4 for AMD64 and Intel EM64T |
| sle10-sp4-sdk.x86-64 sles10-sp4-debuginfo.x86-64 sles10-sp4.x86-64 sled10-sp4.x86-64 ZYPP Patch Nr: 8324 |
| SUSE Linux Enterprise 10 SP4 DEBUGINFO for AMD64 and Intel EM64T |
| sle10-sp4-sdk.x86-64 sles10-sp4-debuginfo.x86-64 sles10-sp4.x86-64 sled10-sp4.x86-64 ZYPP Patch Nr: 8324 |
| SLE SDK 10 SP4 for X86-64 |
| sle10-sp4-sdk.x86-64 sles10-sp4-debuginfo.x86-64 sles10-sp4.x86-64 sled10-sp4.x86-64 ZYPP Patch Nr: 8324 |
| SUSE Linux Enterprise Server 10 SP4 for AMD64 and Intel EM64T |
| sle10-sp4-sdk.x86-64 sles10-sp4-debuginfo.x86-64 sles10-sp4.x86-64 sled10-sp4.x86-64 ZYPP Patch Nr: 8324 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5728 |
