Secunia Logo
 
Mandrake update for kernel
Secunia Advisory: SA9280
Release Date: 2003-07-16
Popularity: 6,891 views

Critical:
Moderately critical
Impact: Exposure of sensitive information
Privilege escalation
DoS
Where: From remote
Solution Status: Vendor Patch

OS:Mandrake Corporate Server 2.x
Mandrake Linux 8.x
Mandrake Linux 9.x
Mandrake Multi Network Firewall 8.x

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2003-0001
CVE-2003-0244
CVE-2003-0246
CVE-2003-0247
CVE-2003-0248
CVE-2003-0462


Description:
MandrakeSoft has issued updated packages for the kernel. These fix multiple vulnerabilities, which are listed below.

1) Many ethernet NIC (Network Interface Card) device drivers pad frames with content from previous packets or kernel memory instead of using NULL-bytes. This may be exploited by malicious people to obtain potentially sensitive information by sending specially crafted packets to a vulnerable system.

2) An error in the way that the Linux Kernel handles caching of routing information can be exploited by malicious people to cause a DoS (Denial of Service) on a vulnerable system.

3) An error in the "ioperm" system call can allow unprivileged, local users to gain read and write access to I/O ports in the I/O address range 0x000-0x3FF (0-1023) on a system, which includes access to serial ports, parallel port, diskette drive controller, graphics controller, and keyboard.

4) An unspecified error in the TTY layer allows malicious people to cause a DoS.

5) An error in the "mxcsr" code allows manipulation of CPU state registers.

6) An error in the "execve()" system call when handling the file descriptor for a target executable may grant read privileges for the file.


For more information:
http://secunia.com/advisories/8786/
http://secunia.com/advisories/8823/
http://secunia.com/advisories/8936/
http://secunia.com/advisories/9154/

Solution:
Upgrade automatically using MandrakeUpdate or manually by downloading the updated packages from one of MandrakeSoft's FTP server mirrors:

http://www.mandrakesecure.net/en/ftp.php


Updated packages:

-- Corporate Server 2.1 --

7d1353ce3e9fb208432efbdd2b88ce1d corporate/2.1/RPMS/kernel-2.4.19.35mdk-1-1mdk.i586.rpm
0326b72151288d0019f8931c00ee0e09 corporate/2.1/RPMS/kernel-BOOT-2.4.19.35mdk-1-1mdk.i586.rpm
32b1a09f83f47f5ff1a5d57a80ccb20a corporate/2.1/RPMS/kernel-enterprise-2.4.19.35mdk-1-1mdk.i586.rpm
980ba2d5c0a1d8a9912c2a69acbbfe78 corporate/2.1/RPMS/kernel-secure-2.4.19.35mdk-1-1mdk.i586.rpm
958b18995fe86327c810f61f4f0dde19 corporate/2.1/RPMS/kernel-smp-2.4.19.35mdk-1-1mdk.i586.rpm
8820530236f374ef7785894da1d9d335 corporate/2.1/RPMS/kernel-source-2.4.19-35mdk.i586.rpm
32603ada685f5e679c4be90942bb3a82 corporate/2.1/SRPMS/kernel-2.4.19.35mdk-1-1mdk.src.rpm


-- Mandrake Linux 8.2 --

2619584b889187747e02fea73a4f1a8e 8.2/RPMS/kernel-2.4.19.35mdk-1-1mdk.i586.rpm
3eaea1e08d39961b53d5738b29aea33e 8.2/RPMS/kernel-BOOT-2.4.19.35mdk-1-1mdk.i586.rpm
b4692c3e92c7e6a43f96bd1f6d7f9358 8.2/RPMS/kernel-doc-2.4.19-35mdk.i586.rpm
e84542a0bdb5b41cec474bf4e4e3c604 8.2/RPMS/kernel-enterprise-2.4.19.35mdk-1-1mdk.i586.rpm
491ae5f0690d23df6219cca1ed1eba18 8.2/RPMS/kernel-secure-2.4.19.35mdk-1-1mdk.i586.rpm
c776ded96b8a2c348243f2597dd86502 8.2/RPMS/kernel-smp-2.4.19.35mdk-1-1mdk.i586.rpm
cef13c1241944b7bd2d7504cb7352305 8.2/RPMS/kernel-source-2.4.19-35mdk.i586.rpm
32603ada685f5e679c4be90942bb3a82 8.2/SRPMS/kernel-2.4.19.35mdk-1-1mdk.src.rpm

PPC:
be46c251cf9c926a343d4669a841ea2c ppc/8.2/RPMS/kernel-2.4.19.35mdk-1-1mdk.ppc.rpm
b89668f6f92f1066f5cbdd04780fa7b5 ppc/8.2/RPMS/kernel-doc-2.4.19-35mdk.ppc.rpm
da58d7320c3a22304e00a1a2498d9062 ppc/8.2/RPMS/kernel-enterprise-2.4.19.35mdk-1-1mdk.ppc.rpm
128aff5750789a51db0985ee17ad466b ppc/8.2/RPMS/kernel-smp-2.4.19.35mdk-1-1mdk.ppc.rpm
82eab7a11ded653b85f741f1d5892338 ppc/8.2/RPMS/kernel-source-2.4.19-35mdk.ppc.rpm
32603ada685f5e679c4be90942bb3a82 ppc/8.2/SRPMS/kernel-2.4.19.35mdk-1-1mdk.src.rpm


-- Mandrake Linux 9.0 --

7d1353ce3e9fb208432efbdd2b88ce1d 9.0/RPMS/kernel-2.4.19.35mdk-1-1mdk.i586.rpm
0326b72151288d0019f8931c00ee0e09 9.0/RPMS/kernel-BOOT-2.4.19.35mdk-1-1mdk.i586.rpm
efb37c9fe34a782d4bc9425e0ac19dda 9.0/RPMS/kernel-doc-2.4.19-35mdk.i586.rpm
32b1a09f83f47f5ff1a5d57a80ccb20a 9.0/RPMS/kernel-enterprise-2.4.19.35mdk-1-1mdk.i586.rpm
980ba2d5c0a1d8a9912c2a69acbbfe78 9.0/RPMS/kernel-secure-2.4.19.35mdk-1-1mdk.i586.rpm
958b18995fe86327c810f61f4f0dde19 9.0/RPMS/kernel-smp-2.4.19.35mdk-1-1mdk.i586.rpm
8820530236f374ef7785894da1d9d335 9.0/RPMS/kernel-source-2.4.19-35mdk.i586.rpm
32603ada685f5e679c4be90942bb3a82 9.0/SRPMS/kernel-2.4.19.35mdk-1-1mdk.src.rpm


-- Multi Network Firewall 8.2 --

491ae5f0690d23df6219cca1ed1eba18 mnf8.2/RPMS/kernel-secure-2.4.19.35mdk-1-1mdk.i586.rpm
32603ada685f5e679c4be90942bb3a82 mnf8.2/SRPMS/kernel-2.4.19.35mdk-1-1mdk.src.rpm


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Sun Java JDK / JRE Multiple Vulnerabilities // 73 views
2. Linksys WRT160N Cross-Site Scripting Vulnerability // 31 views
3. ClamAV "cli_check_jpeg_exploit()" Denial of Service Vulnerability // 31 views
4. Adobe Acrobat/Reader Multiple Vulnerabilities // 31 views
5. IBM Rational ClearQuest Multiple Vulnerabilities // 28 views
6. Debian update for flamethrower // 27 views
7. Rumpus Multiple Vulnerabilities // 23 views
8. bcoos "cid" SQL Injection Vulnerability // 23 views
9. IBM Rational ClearCase Cross-Site Scripting Vulnerability // 23 views
10. DAHDI "ZT_SPANCONFIG" IOCTL Privilege Escalation Vulnerability // 23 views