The release_one_tty function in drivers/char/tty_io.c in the Linux kernel before 2.6.34-rc4 omits certain required calls to the put_pid function, which has unspecified impact and local attack vectors.
openSUSE 11.1 openSUSE 11.2 SUSE Linux Enterprise Desktop 11 GA SUSE Linux Enterprise High Availability Extension 11 SUSE Linux Enterprise Server 11 SUSE Linux Enterprise Server 11 GA SUSE Linux Enterprise Server for SAP Applications 11