Oval Definition:
oval:org.mitre.oval:def:22050
Revision Date
:
2014-02-24
Version
:
36
Title
:
RHSA-2010:0894: systemtap security update (Important)
Description
:
The staprun runtime tool in SystemTap 1.3 does not verify that a module to unload was previously loaded by SystemTap, which allows local users to cause a denial of service (unloading of arbitrary kernel modules).
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CESA-2010:0894
CVE-2010-4170
CVE-2010-4171
RHSA-2010:0894-01
Platform(s)
:
CentOS Linux 5
CentOS Linux 6
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Product(s)
:
systemtap
Definition Synopsis
Operation system section
Redhat 5 or Centos 5 release
The operating system installed on the system is Red Hat Enterprise Linux 5
OR
The operating system installed on the system is CentOS Linux 5.x
AND
Packages section
systemtap-client is earlier than 0:1.1-3.el5_5.3
OR
systemtap-runtime is earlier than 0:1.1-3.el5_5.3
OR
systemtap-testsuite is earlier than 0:1.1-3.el5_5.3
OR
systemtap-sdt-devel is earlier than 0:1.1-3.el5_5.3
OR
systemtap is earlier than 0:1.1-3.el5_5.3
OR
systemtap-initscript is earlier than 0:1.1-3.el5_5.3
OR
systemtap-server is earlier than 0:1.1-3.el5_5.3
Operation system section
The operating system installed on the system is Red Hat Enterprise Linux 6
AND
Packages section
systemtap-runtime is earlier than 0:1.2-11.el6_0
OR
systemtap-client is earlier than 0:1.2-11.el6_0
OR
systemtap-testsuite is earlier than 0:1.2-11.el6_0
OR
systemtap-sdt-devel is earlier than 0:1.2-11.el6_0
OR
systemtap is earlier than 0:1.2-11.el6_0
OR
systemtap-grapher is earlier than 0:1.2-11.el6_0
OR
systemtap-initscript is earlier than 0:1.2-11.el6_0
OR
systemtap-server is earlier than 0:1.2-11.el6_0
BACK