|
Bugzilla – Full Text Bug Listing |
| Summary: | VUL-0: CVE-2005-2457: kernel: wrong return value in ip_conntrack_core | ||
|---|---|---|---|
| Product: | [Novell Products] SUSE Security Incidents | Reporter: | Ludwig Nussel <lnussel> |
| Component: | Incidents | Assignee: | Marcus Meissner <meissner> |
| Status: | RESOLVED FIXED | QA Contact: | Security Team bot <security-team> |
| Severity: | Normal | ||
| Priority: | P5 - None | CC: | krahmer, security-team |
| Version: | unspecified | ||
| Target Milestone: | --- | ||
| Hardware: | Other | ||
| OS: | All | ||
| Whiteboard: | CVSSv2:NVD:CVE-2005-2457:5.0:(AV:N/AC:L/Au:N/C:N/I:N/A:P) | ||
| Found By: | Other | Services Priority: | |
| Business Priority: | Blocker: | --- | |
| Marketing QA Status: | --- | IT Deployment: | --- |
| Attachments: |
mail as attachment
Patch for 9.3 |
||
|
Description
Ludwig Nussel
2005-08-03 08:29:39 UTC
Created attachment 44578 [details]
mail as attachment
olaf says it is fine. we should however test connection tracking afterwards. Is this public already? Can we publish the fix? Kernels 2.6.11 and later seem unaffected by this. Created attachment 46143 [details]
Patch for 9.3
sorry, the above should have read Patch for sles9 Patch submitted to SLES9 SP2, SP3 not public however. but leave it in, it is stale already. only really affected ip_pptp, which we do not ship. From: Stephan Scholz <sscholz@astaro.com> That's right, it is not an issue with the vanilla kernel. Even though there was a bug in the conntrack core, this only lead to problems in combination with the pptp conntrack helper. Other components or helpers were not affected, so it's basically patch-o-matic +only. -> tracking all applied. released. *** Bug 157903 has been marked as a duplicate of this bug. *** |