Oval Definition:oval:org.mitre.oval:def:11392
Revision Date:2013-04-29Version:13
Title:The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX locks on files that are setgid without group-execute permission, which allows local users to cause a denial of service (BUG and system crash) by locking a file on a (1) GFS or (2) GFS2 filesystem, and then changing this file's permissions.
Description:The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX locks on files that are setgid without group-execute permission, which allows local users to cause a denial of service (BUG and system crash) by locking a file on a (1) GFS or (2) GFS2 filesystem, and then changing this file's permissions.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-0727
Platform(s):CentOS Linux 5
Oracle Linux 5
Red Hat Enterprise Linux 5
Product(s):
Definition Synopsis
  • RHEL5, CentOS5 or Oracle Linux 5
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • OR The operating system installed on the system is CentOS Linux 5.x
  • OR Oracle Linux 5.x
  • AND Configuration section
  • kmod-gfs is earlier than 0:0.1.34-12.el5
  • OR kmod-gfs-xen is earlier than 0:0.1.34-12.el5
  • OR kernel-kdump is earlier than 0:2.6.18-194.el5
  • OR kernel-debug is earlier than 0:2.6.18-194.el5
  • OR kernel-xen is earlier than 0:2.6.18-194.el5
  • OR kernel-headers is earlier than 0:2.6.18-194.el5
  • OR kernel-kdump-devel is earlier than 0:2.6.18-194.el5
  • OR kernel-xen-devel is earlier than 0:2.6.18-194.el5
  • OR kernel is earlier than 0:2.6.18-194.el5
  • OR kernel-PAE-devel is earlier than 0:2.6.18-194.el5
  • OR kernel-devel is earlier than 0:2.6.18-194.el5
  • OR gfs-kmod is earlier than 0:0.1.34-12.el5
  • OR kernel-PAE is earlier than 0:2.6.18-194.el5
  • OR kernel-debug-devel is earlier than 0:2.6.18-194.el5
  • OR kernel-doc is earlier than 0:2.6.18-194.el5
  • OR kmod-gfs-PAE is earlier than 0:0.1.34-12.el5
  • BACK