Bug 493771 (CVE-2009-1337)
Summary: | CVE-2009-1337 kernel: exit_notify: kill the wrong capable(CAP_KILL) check | ||||||
---|---|---|---|---|---|---|---|
Product: | [Other] Security Response | Reporter: | Eugene Teo (Security Response) <eteo> | ||||
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> | ||||
Status: | CLOSED ERRATA | QA Contact: | |||||
Severity: | high | Docs Contact: | |||||
Priority: | high | ||||||
Version: | unspecified | CC: | anton, bhu, dhoward, jpirko, jskrabal, lgoncalv, lwang, onestero, phan, vgoyal, williams, yshao | ||||
Target Milestone: | --- | Keywords: | Security | ||||
Target Release: | --- | ||||||
Hardware: | All | ||||||
OS: | Linux | ||||||
Whiteboard: | |||||||
Fixed In Version: | Doc Type: | Bug Fix | |||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | Environment: | ||||||
Last Closed: | 2010-12-21 17:59:40 UTC | Type: | --- | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Bug Depends On: | 494267, 494268, 494269, 494270, 494271, 497266 | ||||||
Bug Blocks: | |||||||
Attachments: |
|
Description
Eugene Teo (Security Response)
2009-04-03 01:58:39 UTC
[RESEND] exit_notify: kill the wrong capable(CAP_KILL) check http://patchwork.kernel.org/patch/16544/ Created attachment 338457 [details] Upsream patch Upstream commit: http://git.kernel.org/linus/432870dab85a2f69dc417022646cb9a70acf7f94 Upstream commit for 2.4 http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.4.37.y.git;a=commitdiff;h=8d1f2ab731ab54b12f82eed4da4d1cefd238578c This issue has been addressed in following products: MRG for RHEL-5 Via RHSA-2009:0451 https://rhn.redhat.com/errata/RHSA-2009-0451.html This issue has been addressed in following products: Red Hat Enterprise Linux 5 Via RHSA-2009:0473 https://rhn.redhat.com/errata/RHSA-2009-0473.html This issue has been addressed in following products: Red Hat Enterprise Linux 4 Via RHSA-2009:1024 https://rhn.redhat.com/errata/RHSA-2009-1024.html This issue has been addressed in following products: Red Hat Enterprise Linux 4 Via RHSA-2009:1024 https://rhn.redhat.com/errata/RHSA-2009-1024.html Fixed in upstream stable updates: 2.6.27.22, 2.6.28.10 and 2.6.29.3 kernel-2.6.27.24-170.2.68.fc10 has been submitted as an update for Fedora 10. http://admin.fedoraproject.org/updates/kernel-2.6.27.24-170.2.68.fc10 kernel-2.6.27.24-170.2.68.fc10 has been pushed to the Fedora 10 stable repository. If problems still persist, please make note of it in this bug report. This issue has been addressed in following products: Red Hat Enterprise Linux 4.7 Z Stream Via RHSA-2009:1077 https://rhn.redhat.com/errata/RHSA-2009-1077.html This issue has been addressed in following products: Red Hat Enterprise Linux 3 Via RHSA-2009:1550 https://rhn.redhat.com/errata/RHSA-2009-1550.html |