Oval Definition:oval:org.mitre.oval:def:7882
Revision Date:2014-06-23Version:20
Title:DSA-1494 linux-2.6 -- missing access checks
Description:The vmsplice system call did not properly verify address arguments passed by user space processes, which allowed local attackers to overwrite arbitrary kernel memory, gaining root privileges (CVE-2008-0010, CVE-2008-0600). In the vserver-enabled kernels, a missing access check on certain symlinks in /proc enabled local attackers to access resources in other vservers (CVE-2008-0163). The old stable distribution (sarge) is not affected by this problem.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2008-0010
CVE-2008-0163
CVE-2008-0600
DSA-1494
Platform(s):Debian GNU/Linux 4.0
Product(s):linux-2.6
Definition Synopsis
  • Debian GNU/Linux 4.0 is installed.
  • AND Architecture section
  • Architecture independent section
  • Installed architecture is all
  • AND Packages section
  • linux-support-2.6.18-6 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-patch-debian-2.6.18 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-source-2.6.18 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-manual-2.6.18 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-tree-2.6.18 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-doc-2.6.18 is earlier than 2.6.18.dfsg.1-18etch1
  • OR Architecture dependent section
  • Installed architecture is s390
  • AND Packages section
  • linux-headers-2.6.18-6-vserver-s390x is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-s390 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-all is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-s390x is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-vserver-s390x is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-s390-tape is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-s390 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-vserver is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-all-s390 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-s390x is earlier than 2.6.18.dfsg.1-18etch1
  • OR Architecture dependent section
  • Installed architecture is amd64
  • AND Packages section
  • linux-image-2.6.18-6-xen-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR fai-kernels is earlier than 1.17+etch.18etch1
  • OR linux-headers-2.6.18-6-all is earlier than 2.6.18.dfsg.1-18etch1
  • OR xen-linux-system-2.6.18-6-xen-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-modules-2.6.18-6-xen-vserver-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-xen-vserver-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-xen-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR xen-linux-system-2.6.18-6-xen-vserver-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-xen is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-xen-vserver-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-vserver is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-vserver-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-all-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-modules-2.6.18-6-xen-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-xen-vserver is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-vserver-amd64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR Supported platform section
  • Installed architecture is hppa
  • AND Packages section
  • linux-headers-2.6.18-6-all is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-parisc64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-parisc is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-all-hppa is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-parisc-smp is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-parisc64-smp is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-parisc is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-headers-2.6.18-6-parisc64-smp is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-parisc64 is earlier than 2.6.18.dfsg.1-18etch1
  • OR linux-image-2.6.18-6-parisc-smp is earlier than 2.6.18.dfsg.1-18etch1
  • BACK