Red Hat Bugzilla – Bug 144785
CAN-2005-0003 huge vma-in-executable bug
Last modified: 2007-11-30 17:06:54 EST
CAN-2004-1074 fixes a flaw allowing a malicious binary to crash a system. It was found that a similar flaw also affected 64-bit ELF support, therefore affecting ia64 support. Fixed upstream in 2.6; http://linux.bkbits.net:8080/linux-2.6/cset@41a6721cce-LoPqkzKXudYby_3TUmg impact=important,public=20051125
It turns out that only Derry (AS2.1-ia64) is vulnerable to this. Pensacola (AS2.1-x86) is based on a different kernel rev that handles insert_vma_struct() differently. The same type of poisoned binary that causes Derry to crash exits with an error on Pensacola. I'm updating the "hardware" field of this report accordingly.
A fix for this problem has also been committed to the RHEL2.1 U7 patch pool (in kernel version 2.4.18-e.53)
*** Bug 144365 has been marked as a duplicate of this bug. ***
An advisory has been issued which should help the problem described in this bug report. This report is therefore being closed with a resolution of ERRATA. For more information on the solution and/or where to find the updated files, please follow the link below. You may reopen this bug report if the solution does not work for you. http://rhn.redhat.com/errata/RHSA-2005-017.html