Bug 653252
Summary: | kernel: restrict unprivileged access to kernel syslog [rhel-4.9] | ||
---|---|---|---|
Product: | Red Hat Enterprise Linux 4 | Reporter: | Eugene Teo (Security Response) <eteo> |
Component: | kernel | Assignee: | Frantisek Hrbata <fhrbata> |
Status: | CLOSED ERRATA | QA Contact: | Evan McNabb <emcnabb> |
Severity: | high | Docs Contact: | |
Priority: | high | ||
Version: | 4.9 | CC: | dhoward, jolsa, lwang, penguin-kernel, plyons, syeghiay, vgoyal |
Target Milestone: | rc | ||
Target Release: | --- | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | 653245 | Environment: | |
Last Closed: | 2011-02-16 15:49:56 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 653245, 653254 | ||
Bug Blocks: | 653250 |
Description
Eugene Teo (Security Response)
2010-11-15 04:24:49 UTC
This request was evaluated by Red Hat Product Management for inclusion in a Red Hat Enterprise Linux maintenance release. Product Management has requested further review of this request by Red Hat Engineering, for potential inclusion in a Red Hat Enterprise Linux Update release for currently deployed products. This request is not yet committed for inclusion in an Update release. Committed in 94.EL . RPMS are available at http://people.redhat.com/vgoyal/rhel4/ An advisory has been issued which should help the problem described in this bug report. This report is therefore being closed with a resolution of ERRATA. For more information on therefore solution and/or where to find the updated files, please follow the link below. You may reopen this bug report if the solution does not work for you. http://rhn.redhat.com/errata/RHSA-2011-0263.html By the way, kernel-2.6.9-100.EL.src.rpm contains a wrong entry "CONFIG_SECURITY_DMESG_RESTRICT=n" in /usr/src/redhat/SOURCES/*.config . Correct entry is "# CONFIG_SECURITY_DMESG_RESTRICT is not set". kernel-2.6.9-i686-hugemem.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-i686-smp.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-i686-xenU.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-i686.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-ia64-largesmp.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-ia64.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-ppc.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-ppc.config:CONFIG_THERM_WINDTUNNEL=n kernel-2.6.9-ppc.config:CONFIG_THERM_ADT746X=n kernel-2.6.9-ppc64-largesmp.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-ppc64.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-ppc64iseries.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-s390.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-s390x.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-x86_64-largesmp.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-x86_64-smp.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-x86_64-xenU.config:CONFIG_SECURITY_DMESG_RESTRICT=n kernel-2.6.9-x86_64.config:CONFIG_SECURITY_DMESG_RESTRICT=n |