Hide Forgot
A flaw was found in the way pipe_iov_copy_from_user() and pipe_iov_copy_to_user() functions handled iovecs remaining len accounting on failed atomic access. An unprivileged local user could this flaw to crash the system or, potentially, escalate their privileges on the system. Upstream fixes: http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=f0d1bec9d58d4c038d0ac958c9af82be6eb18045 http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=637b58c2887e5e57850865839cc75f59184b23d1 Acknowledgements: The security impact of this issue was discovered by Red Hat.
Statement: This issue does affect the Linux kernel packages as shipped with Red Hat Enterprise Linux 5, 6, and 7, and Red Hat Enterprise MRG 2. Future Linux kernel updates for the respective releases will address this issue.
This issue has been addressed in the following products: Red Hat Enterprise Linux 5 Via RHSA-2015:1042 https://rhn.redhat.com/errata/RHSA-2015-1042.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 6.2 AUS Via RHSA-2015:1082 https://rhn.redhat.com/errata/RHSA-2015-1082.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Via RHSA-2015:1081 https://rhn.redhat.com/errata/RHSA-2015-1081.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 5.9 AUS - Server Only Via RHSA-2015:1120 https://rhn.redhat.com/errata/RHSA-2015-1120.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2015:1139 https://rhn.redhat.com/errata/RHSA-2015-1139.html
This issue has been addressed in the following products: MRG for RHEL-6 v.2 Via RHSA-2015:1138 https://rhn.redhat.com/errata/RHSA-2015-1138.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2015:1137 https://rhn.redhat.com/errata/RHSA-2015-1137.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 5.6 Long Life Via RHSA-2015:1190 https://rhn.redhat.com/errata/RHSA-2015-1190.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 6.5 EUS - Server and Compute Node Only Via RHSA-2015:1199 https://rhn.redhat.com/errata/RHSA-2015-1199.html
This issue has been addressed in the following products: Red Hat Enterprise Linux 6.4 AUS - Server Only Via RHSA-2015:1211 https://rhn.redhat.com/errata/RHSA-2015-1211.html