Oval Definition:
oval:org.mitre.oval:def:7957
Revision Date
:
2014-06-23
Version
:
20
Title
:
DSA-1505 alsa-driver -- kernel memory leak
Description
:
Takashi Iwai supplied a fix for a memory leak in the snd_page_alloc module. Local users could exploit this issue to obtain sensitive information from the kernel (CVE-2007-4571).
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2007-4571
DSA-1505
Platform(s)
:
Debian GNU/Linux 3.1
Debian GNU/Linux 4.0
Product(s)
:
alsa-driver
Definition Synopsis
Release section
Debian GNU/Linux 4.0 is installed.
AND
Installed architecture is all
AND
Packages section
alsa-source is earlier than 1.0.13-5etch1
OR
alsa-base is earlier than 1.0.13-5etch1
OR
linux-sound-base is earlier than 1.0.13-5etch1
OR
Release section
Debian GNU/Linux 3.1 is installed
AND
Architecture section
Architecture independent section
Installed architecture is all
AND
Packages section
alsa-source is earlier than 1.0.8-7sarge1
OR
alsa-base is earlier than 1.0.8-7sarge1
OR
alsa-headers is earlier than 1.0.8-7sarge1
OR
Architecture dependent section
Installed architecture is i386
AND
Packages section
alsa-modules-2.4.27-4-686-smp is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4-386 is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4.27-4-k7 is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4.27-4-686 is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4.27-4-586tsc is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4-686-smp is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4.27-4-k6 is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4-k7-smp is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4.27-4-k7-smp is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4-k6 is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4-586tsc is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4-k7 is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4.27-4-386 is earlier than 1.0.8+2sarge2
OR
alsa-modules-2.4-686 is earlier than 1.0.8+2sarge2
BACK