Oval Definition:oval:org.opensuse.security:def:20093624
Revision Date:2015-11-16Version:1
Title:CVE-2009-3624
Description:
The get_instantiation_keyring function in security/keys/keyctl.c in the KEYS subsystem in the Linux kernel before 2.6.32-rc5 does not properly maintain the reference count of a keyring, which allows local users to gain privileges or cause a denial of service (OOPS) via vectors involving calls to this function without specifying a keyring by ID, as demonstrated by a series of keyctl request2 and keyctl list commands.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2009-3624
Platform(s):openSUSE 11.2
SUSE Linux Enterprise 11 Moblin 2.0
SUSE Linux Enterprise 11 Moblin 2.0 for Samsung
Product(s):
Definition Synopsis
  • Release Information
  • suse112 is installed
  • AND
  • kernel-debug-base less than 2.6.31.8-0.1.1
  • OR kernel-debug-devel less than 2.6.31.8-0.1.1
  • OR kernel-debug less than 2.6.31.8-0.1.1
  • OR kernel-default-base less than 2.6.31.8-0.1.1
  • OR kernel-default-devel less than 2.6.31.8-0.1.1
  • OR kernel-default less than 2.6.31.8-0.1.1
  • OR kernel-desktop-base less than 2.6.31.8-0.1.1
  • OR kernel-desktop-devel less than 2.6.31.8-0.1.1
  • OR kernel-desktop less than 2.6.31.8-0.1.1
  • OR kernel-pae-base less than 2.6.31.8-0.1.1
  • OR kernel-pae-devel less than 2.6.31.8-0.1.1
  • OR kernel-pae less than 2.6.31.8-0.1.1
  • OR kernel-source-vanilla less than 2.6.31.8-0.1.1
  • OR kernel-source less than 2.6.31.8-0.1.1
  • OR kernel-syms less than 2.6.31.8-0.1.1
  • OR kernel-trace-base less than 2.6.31.8-0.1.1
  • OR kernel-trace-devel less than 2.6.31.8-0.1.1
  • OR kernel-trace less than 2.6.31.8-0.1.1
  • OR kernel-vanilla-base less than 2.6.31.8-0.1.1
  • OR kernel-vanilla-devel less than 2.6.31.8-0.1.1
  • OR kernel-vanilla less than 2.6.31.8-0.1.1
  • OR kernel-xen-base less than 2.6.31.8-0.1.1
  • OR kernel-xen-devel less than 2.6.31.8-0.1.1
  • OR kernel-xen less than 2.6.31.8-0.1.1
  • OR preload-kmp-default less than 1.1_2.6.31.8_0.1-6.9.3
  • OR preload-kmp-desktop less than 1.1_2.6.31.8_0.1-6.9.3
  • OR Package Information
  • sle11-moblin20 is installed
  • kernel-default-base less than 2.6.30.10-0.1.1
  • OR kernel-default-extra less than 2.6.30.10-0.1.1
  • OR kernel-default less than 2.6.30.10-0.1.1
  • OR
  • sle11-moblin20-samsung is installed
  • AND samsung-atheros-kmp-default less than 001_2.6.30.10_0.1-0.1.1
  • BACK