Описание
ELSA-2011-0332: scsi-target-utils security update (IMPORTANT)
[1.0.4-3.1]
- fix the buffer overflow bug before iscsi login (CVE-2011-0001)
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
scsi-target-utils
1.0.4-3.el6_0.1
Oracle Linux i686
scsi-target-utils
1.0.4-3.el6_0.1
Oracle Linux 5
Oracle Linux ia64
scsi-target-utils
1.0.8-0.el5_6.1
Oracle Linux x86_64
scsi-target-utils
1.0.8-0.el5_6.1
Oracle Linux i386
scsi-target-utils
1.0.8-0.el5_6.1
Связанные CVE
Связанные уязвимости
Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown vectors related to a buffer overflow during iscsi login. NOTE: some of these details are obtained from third party information.
Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown vectors related to a buffer overflow during iscsi login. NOTE: some of these details are obtained from third party information.
Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown vectors related to a buffer overflow during iscsi login. NOTE: some of these details are obtained from third party information.
Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/ ...
Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown vectors related to a buffer overflow during iscsi login. NOTE: some of these details are obtained from third party information.