Linux kernel built with XFRM framework support is vulnerable to a memory leakage flaw. It occurs when a user creates a new state or updates an existing one but does not supply the bytes for the whole ESN replay window and the kernel copies heap bytes into the replay bitmap follow the XFRMA_REPLAY_ESN_VAL netlink attribute. A privileged(CAP_NET_ADMIN) user could use this flaw to leak up to ~3.5kB of kernel heap memory. Upstream fix ------------- -> https://git.kernel.org/linus/ecd7918745234e423dd87fcc0c077da557909720 Reference: ---------- -> http://www.openwall.com/lists/oss-security/2013/03/14/21
Statement: This issue does not affect the versions of the kernel package as shipped with Red Hat Enterprise Linux 5, 6 and Red Hat Enterprise MRG 2.