Upstream information

CVE-2010-4249 at MITRE

Description

The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next-20101125 does not properly select times for garbage collection of inflight sockets, which allows local users to cause a denial of service (system hang) via crafted use of the socketpair and sendmsg system calls for SOCK_SEQPACKET sockets.

SUSE information

CVSS v2 Scores
  National Vulnerability Database
Base Score 4.94
Vector AV:L/AC:L/Au:N/C:N/I:N/A:C
Access Vector Local
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Complete
SUSE Bugzilla entries: 655696 [CLOSED / FIXED], 656153 [CLOSED / FIXED]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Desktop 10 SP4 for x86
  • kernel-bigsmp >= 2.6.16.60-0.93.1
  • kernel-default >= 2.6.16.60-0.93.1
  • kernel-smp >= 2.6.16.60-0.93.1
  • kernel-source >= 2.6.16.60-0.93.1
  • kernel-syms >= 2.6.16.60-0.93.1
  • kernel-xen >= 2.6.16.60-0.93.1
  • kernel-xenpae >= 2.6.16.60-0.93.1
sle10-sp4-sdk.x86
sles10-sp4.x86
sled10-sp4.x86
sles10-sp4-debuginfo.x86
ZYPP Patch Nr: 7918
SLE SDK 10 SP4 for x86
  • kernel-debug >= 2.6.16.60-0.93.1
  • kernel-kdump >= 2.6.16.60-0.93.1
  • kernel-xen >= 2.6.16.60-0.93.1
  • kernel-xenpae >= 2.6.16.60-0.93.1
sle10-sp4-sdk.x86
sles10-sp4.x86
sled10-sp4.x86
sles10-sp4-debuginfo.x86
ZYPP Patch Nr: 7918
SUSE Linux Enterprise Server 10 SP4 for x86
  • kernel-bigsmp >= 2.6.16.60-0.93.1
  • kernel-debug >= 2.6.16.60-0.93.1
  • kernel-default >= 2.6.16.60-0.93.1
  • kernel-kdump >= 2.6.16.60-0.93.1
  • kernel-kdumppae >= 2.6.16.60-0.93.1
  • kernel-smp >= 2.6.16.60-0.93.1
  • kernel-source >= 2.6.16.60-0.93.1
  • kernel-syms >= 2.6.16.60-0.93.1
  • kernel-vmi >= 2.6.16.60-0.93.1
  • kernel-vmipae >= 2.6.16.60-0.93.1
  • kernel-xen >= 2.6.16.60-0.93.1
  • kernel-xenpae >= 2.6.16.60-0.93.1
sle10-sp4-sdk.x86
sles10-sp4.x86
sled10-sp4.x86
sles10-sp4-debuginfo.x86
ZYPP Patch Nr: 7918
SLE SDK 10 SP4 for IBM iSeries and IBM pSeries
  • kernel-kdump >= 2.6.16.60-0.93.1
sles10-sp4-debuginfo.ppc
sle10-sp4-sdk.ppc
sles10-sp4.ppc
ZYPP Patch Nr: 7913
SUSE Linux Enterprise Server 10 SP4 for IBM POWER
  • kernel-default >= 2.6.16.60-0.93.1
  • kernel-iseries64 >= 2.6.16.60-0.93.1
  • kernel-kdump >= 2.6.16.60-0.93.1
  • kernel-ppc64 >= 2.6.16.60-0.93.1
  • kernel-source >= 2.6.16.60-0.93.1
  • kernel-syms >= 2.6.16.60-0.93.1
sles10-sp4-debuginfo.ppc
sle10-sp4-sdk.ppc
sles10-sp4.ppc
ZYPP Patch Nr: 7913
SUSE Linux Enterprise Desktop 10 SP4 for AMD64 and Intel EM64T
  • kernel-default >= 2.6.16.60-0.93.1
  • kernel-smp >= 2.6.16.60-0.93.1
  • kernel-source >= 2.6.16.60-0.93.1
  • kernel-syms >= 2.6.16.60-0.93.1
  • kernel-xen >= 2.6.16.60-0.93.1
sled10-sp4.x86-64
sle10-sp4-sdk.x86-64
sles10-sp4-debuginfo.x86-64
sles10-sp4.x86-64
ZYPP Patch Nr: 7915
SLE SDK 10 SP4 for X86-64
  • kernel-debug >= 2.6.16.60-0.93.1
  • kernel-kdump >= 2.6.16.60-0.93.1
  • kernel-xen >= 2.6.16.60-0.93.1
sled10-sp4.x86-64
sle10-sp4-sdk.x86-64
sles10-sp4-debuginfo.x86-64
sles10-sp4.x86-64
ZYPP Patch Nr: 7915
SUSE Linux Enterprise Server 10 SP4 for AMD64 and Intel EM64T
  • kernel-debug >= 2.6.16.60-0.93.1
  • kernel-default >= 2.6.16.60-0.93.1
  • kernel-kdump >= 2.6.16.60-0.93.1
  • kernel-smp >= 2.6.16.60-0.93.1
  • kernel-source >= 2.6.16.60-0.93.1
  • kernel-syms >= 2.6.16.60-0.93.1
  • kernel-xen >= 2.6.16.60-0.93.1
sled10-sp4.x86-64
sle10-sp4-sdk.x86-64
sles10-sp4-debuginfo.x86-64
sles10-sp4.x86-64
ZYPP Patch Nr: 7915
SUSE Linux Enterprise Server 10 SP3 LTSS for IBM zSeries 64bit
  • kernel-default >= 2.6.16.60-0.113.1
  • kernel-source >= 2.6.16.60-0.113.1
  • kernel-syms >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8755
SUSE Linux Enterprise Server 10 SP4 for IBM zSeries 64bit
  • kernel-default >= 2.6.16.60-0.95.1
  • kernel-source >= 2.6.16.60-0.95.1
  • kernel-syms >= 2.6.16.60-0.95.1
sles10-sp4-debuginfo.s390x
sles10-sp4.s390x
ZYPP Patch Nr: 7931
SUSE Linux Enterprise Server 10 SP3 LTSS for AMD64 and Intel EM64T
  • kernel-debug >= 2.6.16.60-0.113.1
  • kernel-default >= 2.6.16.60-0.113.1
  • kernel-kdump >= 2.6.16.60-0.113.1
  • kernel-smp >= 2.6.16.60-0.113.1
  • kernel-source >= 2.6.16.60-0.113.1
  • kernel-syms >= 2.6.16.60-0.113.1
  • kernel-xen >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8756
SLE SDK 10 SP4 for IPF
  • kernel-debug >= 2.6.16.60-0.93.1
sles10-sp4.ia64
sles10-sp4-debuginfo.ia64
sle10-sp4-sdk.ia64
ZYPP Patch Nr: 7912
SUSE Linux Enterprise Server 10 SP4 for IPF
  • kernel-debug >= 2.6.16.60-0.93.1
  • kernel-default >= 2.6.16.60-0.93.1
  • kernel-source >= 2.6.16.60-0.93.1
  • kernel-syms >= 2.6.16.60-0.93.1
sles10-sp4.ia64
sles10-sp4-debuginfo.ia64
sle10-sp4-sdk.ia64
ZYPP Patch Nr: 7912
SUSE Linux Enterprise Server 10 SP3 LTSS for x86
  • kernel-bigsmp >= 2.6.16.60-0.113.1
  • kernel-debug >= 2.6.16.60-0.113.1
  • kernel-default >= 2.6.16.60-0.113.1
  • kernel-kdump >= 2.6.16.60-0.113.1
  • kernel-kdumppae >= 2.6.16.60-0.113.1
  • kernel-smp >= 2.6.16.60-0.113.1
  • kernel-source >= 2.6.16.60-0.113.1
  • kernel-syms >= 2.6.16.60-0.113.1
  • kernel-vmi >= 2.6.16.60-0.113.1
  • kernel-vmipae >= 2.6.16.60-0.113.1
  • kernel-xen >= 2.6.16.60-0.113.1
  • kernel-xenpae >= 2.6.16.60-0.113.1
Builds
ZYPP Patch Nr: 8754
openSUSE 11.4
  • kernel-debug >= 2.6.37.6-0.20.1
  • kernel-debug-base >= 2.6.37.6-0.20.1
  • kernel-debug-base-debuginfo >= 2.6.37.6-0.20.1
  • kernel-debug-debuginfo >= 2.6.37.6-0.20.1
  • kernel-debug-debugsource >= 2.6.37.6-0.20.1
  • kernel-debug-devel >= 2.6.37.6-0.20.1
  • kernel-debug-devel-debuginfo >= 2.6.37.6-0.20.1
  • kernel-default >= 2.6.37.6-0.20.1
  • kernel-default-base >= 2.6.37.6-0.20.1
  • kernel-default-base-debuginfo >= 2.6.37.6-0.20.1
  • kernel-default-debuginfo >= 2.6.37.6-0.20.1
  • kernel-default-debugsource >= 2.6.37.6-0.20.1
  • kernel-default-devel >= 2.6.37.6-0.20.1
  • kernel-default-devel-debuginfo >= 2.6.37.6-0.20.1
  • kernel-desktop >= 2.6.37.6-0.20.1
  • kernel-desktop-base >= 2.6.37.6-0.20.1
  • kernel-desktop-base-debuginfo >= 2.6.37.6-0.20.1
  • kernel-desktop-debuginfo >= 2.6.37.6-0.20.1
  • kernel-desktop-debugsource >= 2.6.37.6-0.20.1
  • kernel-desktop-devel >= 2.6.37.6-0.20.1
  • kernel-desktop-devel-debuginfo >= 2.6.37.6-0.20.1
  • kernel-devel >= 2.6.37.6-0.20.1
  • kernel-docs >= 2.6.37.6-0.20.2
  • kernel-ec2 >= 2.6.37.6-0.20.1
  • kernel-ec2-base >= 2.6.37.6-0.20.1
  • kernel-ec2-base-debuginfo >= 2.6.37.6-0.20.1
  • kernel-ec2-debuginfo >= 2.6.37.6-0.20.1
  • kernel-ec2-debugsource >= 2.6.37.6-0.20.1
  • kernel-ec2-devel >= 2.6.37.6-0.20.1
  • kernel-ec2-devel-debuginfo >= 2.6.37.6-0.20.1
  • kernel-ec2-extra >= 2.6.37.6-0.20.1
  • kernel-ec2-extra-debuginfo >= 2.6.37.6-0.20.1
  • kernel-pae >= 2.6.37.6-0.20.1
  • kernel-pae-base >= 2.6.37.6-0.20.1
  • kernel-pae-base-debuginfo >= 2.6.37.6-0.20.1
  • kernel-pae-debuginfo >= 2.6.37.6-0.20.1
  • kernel-pae-debugsource >= 2.6.37.6-0.20.1
  • kernel-pae-devel >= 2.6.37.6-0.20.1
  • kernel-pae-devel-debuginfo >= 2.6.37.6-0.20.1
  • kernel-source >= 2.6.37.6-0.20.1
  • kernel-source-vanilla >= 2.6.37.6-0.20.1
  • kernel-syms >= 2.6.37.6-0.20.1
  • kernel-trace >= 2.6.37.6-0.20.1
  • kernel-trace-base >= 2.6.37.6-0.20.1
  • kernel-trace-base-debuginfo >= 2.6.37.6-0.20.1
  • kernel-trace-debuginfo >= 2.6.37.6-0.20.1
  • kernel-trace-debugsource >= 2.6.37.6-0.20.1
  • kernel-trace-devel >= 2.6.37.6-0.20.1
  • kernel-trace-devel-debuginfo >= 2.6.37.6-0.20.1
  • kernel-vanilla >= 2.6.37.6-0.20.1
  • kernel-vanilla-base >= 2.6.37.6-0.20.1
  • kernel-vanilla-base-debuginfo >= 2.6.37.6-0.20.1
  • kernel-vanilla-debuginfo >= 2.6.37.6-0.20.1
  • kernel-vanilla-debugsource >= 2.6.37.6-0.20.1
  • kernel-vanilla-devel >= 2.6.37.6-0.20.1
  • kernel-vanilla-devel-debuginfo >= 2.6.37.6-0.20.1
  • kernel-vmi >= 2.6.37.6-0.20.1
  • kernel-vmi-base >= 2.6.37.6-0.20.1
  • kernel-vmi-base-debuginfo >= 2.6.37.6-0.20.1
  • kernel-vmi-debuginfo >= 2.6.37.6-0.20.1
  • kernel-vmi-debugsource >= 2.6.37.6-0.20.1
  • kernel-vmi-devel >= 2.6.37.6-0.20.1
  • kernel-vmi-devel-debuginfo >= 2.6.37.6-0.20.1
  • kernel-xen >= 2.6.37.6-0.20.1
  • kernel-xen-base >= 2.6.37.6-0.20.1
  • kernel-xen-base-debuginfo >= 2.6.37.6-0.20.1
  • kernel-xen-debuginfo >= 2.6.37.6-0.20.1
  • kernel-xen-debugsource >= 2.6.37.6-0.20.1
  • kernel-xen-devel >= 2.6.37.6-0.20.1
  • kernel-xen-devel-debuginfo >= 2.6.37.6-0.20.1
  • preload >= 1.2-6.17.1
  • preload-debuginfo >= 1.2-6.17.1
  • preload-debugsource >= 1.2-6.17.1
  • preload-kmp-default >= 1.2_k2.6.37.6_0.20-6.17.1
  • preload-kmp-default-debuginfo >= 1.2_k2.6.37.6_0.20-6.17.1
  • preload-kmp-desktop >= 1.2_k2.6.37.6_0.20-6.17.1
  • preload-kmp-desktop-debuginfo >= 1.2_k2.6.37.6_0.20-6.17.1
Patchnames:
openSUSE-2012-342
openSUSE-2012-756