Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

fstec логотип

BDU:2015-01652

Опубликовано: 01 янв. 2015
Источник: fstec
CVSS2: 7.2
EPSS Низкий

Описание

Множественные уязвимости пакета linux-headers-2.6.18-5-r4k-ip22 операционной системы Debian GNU/Linux, эксплуатация которых может привести к нарушению конфиденциальности, целостности и доступности защищаемой информации.

Вендор

Сообщество свободного программного обеспечения

Наименование ПО

Debian GNU/Linux

Версия ПО

до 4 (Debian GNU/Linux)

Тип ПО

Операционная система

Операционные системы и аппаратные платформы

-

Уровень опасности уязвимости

Высокий уровень опасности (базовая оценка CVSS 2.0 составляет 7,2)

Возможные меры по устранению уязвимости

Проблема может быть решена обновлением операционной системы до следующих версий пакетов в зависимости от архитектуры:
Debian GNU/Linux 4:
ppc:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-powerpc - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-powerpc - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-powerpc-miboot - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-powerpc-smp - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-powerpc64 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-prep - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver-powerpc - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver-powerpc64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-powerpc - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-powerpc-miboot - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-powerpc-smp - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-powerpc64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-prep - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-vserver-powerpc - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-vserver-powerpc64 - 2.6.18.dfsg.1-13etch3
fai-kernels - 1.17+etch.13etch3
s390x:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-s390 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-s390 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-s390x - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver-s390x - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-s390 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-s390-tape - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-s390x - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-vserver-s390x - 2.6.18.dfsg.1-13etch3
i686:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-486 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-686 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-686-bigmem - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-i386 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-amd64 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-k7 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver-686 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver-k7 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-xen - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-xen-686 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-xen-vserver - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-xen-vserver-686 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-486 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-686 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-686-bigmem - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-amd64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-k7 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-vserver-686 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-vserver-k7 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-xen-686 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-xen-vserver-686 - 2.6.18.dfsg.1-13etch3
linux-modules-2.6.18-5-xen-686 - 2.6.18.dfsg.1-13etch3
linux-modules-2.6.18-5-xen-vserver-686 - 2.6.18.dfsg.1-13etch3
xen-linux-system-2.6.18-5-xen-686 - 2.6.18.dfsg.1-13etch3
xen-linux-system-2.6.18-5-xen-vserver-686 - 2.6.18.dfsg.1-13etch3
fai-kernels - 1.17+etch.13etch3
user-mode-linux - 2.6.18-1um-2etch.13etch3
hppa:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-hppa - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-parisc - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-parisc-smp - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-parisc64 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-parisc64-smp - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-parisc - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-parisc-smp - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-parisc64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-parisc64-smp - 2.6.18.dfsg.1-13etch3
sparc:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-sparc - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-sparc32 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-sparc64 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-sparc64-smp - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver-sparc64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-sparc32 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-sparc64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-sparc64-smp - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-vserver-sparc64 - 2.6.18.dfsg.1-13etch3
x86-64:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-amd64 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-amd64 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver-amd64 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-xen - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-xen-amd64 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-xen-vserver - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-xen-vserver-amd64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-amd64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-vserver-amd64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-xen-amd64 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-xen-vserver-amd64 - 2.6.18.dfsg.1-13etch3
linux-modules-2.6.18-5-xen-amd64 - 2.6.18.dfsg.1-13etch3
linux-modules-2.6.18-5-xen-vserver-amd64 - 2.6.18.dfsg.1-13etch3
xen-linux-system-2.6.18-5-xen-amd64 - 2.6.18.dfsg.1-13etch3
xen-linux-system-2.6.18-5-xen-vserver-amd64 - 2.6.18.dfsg.1-13etch3
fai-kernels - 1.17+etch.13etch3
alpha:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-alpha - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-alpha-generic - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-alpha-legacy - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-alpha-smp - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-vserver-alpha - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-alpha-generic - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-alpha-legacy - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-alpha-smp - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-vserver-alpha - 2.6.18.dfsg.1-13etch3
ia64:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-ia64 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-itanium - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-mckinley - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-itanium - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-mckinley - 2.6.18.dfsg.1-13etch3
mips:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-mips - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-qemu - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-r4k-ip22 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-r5k-ip32 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-sb1-bcm91250a - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-sb1a-bcm91480b - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-qemu - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-r4k-ip22 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-r5k-ip32 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-sb1-bcm91250a - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-sb1a-bcm91480b - 2.6.18.dfsg.1-13etch3
noarch:
linux-doc-2.6.18 - 2.6.18.dfsg.1-13etch3
linux-manual-2.6.18 - 2.6.18.dfsg.1-13etch3
linux-patch-debian-2.6.18 - 2.6.18.dfsg.1-13etch3
linux-source-2.6.18 - 2.6.18.dfsg.1-13etch3
linux-support-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-tree-2.6.18 - 2.6.18.dfsg.1-13etch3
mipsel:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-mipsel - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-qemu - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-r3k-kn02 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-r4k-kn04 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-r5k-cobalt - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-sb1-bcm91250a - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-sb1a-bcm91480b - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-qemu - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-r3k-kn02 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-r4k-kn04 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-r5k-cobalt - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-sb1-bcm91250a - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-sb1a-bcm91480b - 2.6.18.dfsg.1-13etch3
arm:
linux-headers-2.6.18-5 - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-all-arm - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-footbridge - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-iop32x - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-ixp4xx - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-rpc - 2.6.18.dfsg.1-13etch3
linux-headers-2.6.18-5-s3c2410 - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-footbridge - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-iop32x - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-ixp4xx - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-rpc - 2.6.18.dfsg.1-13etch3
linux-image-2.6.18-5-s3c2410 - 2.6.18.dfsg.1-13etch3

Статус уязвимости

Подтверждена производителем

Наличие эксплойта

Данные уточняются

Информация об устранении

Уязвимость устранена

EPSS

Процентиль: 10%
0.00038
Низкий

7.2 High

CVSS2

Связанные уязвимости

ubuntu
почти 18 лет назад

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.

redhat
почти 18 лет назад

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.

nvd
почти 18 лет назад

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.

debian
почти 18 лет назад

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid ...

github
около 3 лет назад

The Linux kernel 2.6.20 and 2.6.21 does not properly handle an invalid LDT segment selector in %cs (the xcs field) during ptrace single-step operations, which allows local users to cause a denial of service (NULL dereference and OOPS) via certain code that makes ptrace PTRACE_SETREGS and PTRACE_SINGLESTEP requests, related to the TRACE_IRQS_ON function, and possibly related to the arch_ptrace function.

EPSS

Процентиль: 10%
0.00038
Низкий

7.2 High

CVSS2