Bugzilla – Bug 90500
VUL-0: CVE-2005-1767: kernel: 2.4 only local stack overflow segment dos on x86-64
Last modified: 2021-10-19 13:58:22 UTC
Created attachment 39008 [details] Don't use exception stack for stack segment Untested patch for 2.4.31.
*** Bug 88492 has been marked as a duplicate of this bug. ***
Is this public, so I can add it to all 2.4 based trees? I would like to avoid security bugs piling up again :/
No, it's not public. I don't know when RH will, however since it is only a local dos i hope they won't take too long.
ping andi? is it public now?
Ah no. I actually forgot about that one. I will do a patch for Marcelo now.
hubert, please also add to SLES 8 kernel.
Fix has been committed to all 2.4 based trees.
Is this fully public now? The mitre site doesn't list the can number yet and are about to release the kernels.
updates released
http://kernel.org/git/?p=linux/kernel/git/marcelo/linux-2.4.git;a=commit;h=51e31546a2fc46cb978da2ee0330a6a68f07541e
CVE-2005-1767: CVSS v2 Base Score: 2.1 (AV:L/AC:L/Au:N/C:N/I:N/A:P)