Linux Kernel ELF Loader Mismatched Architecture本地拒绝服务漏洞

漏洞信息详情

Linux Kernel ELF Loader Mismatched Architecture本地拒绝服务漏洞

漏洞简介

Linux kernel 2.4和2.4.25之前版本中的ELF loader存在漏洞。本地用户可以借助一个带有无效arch(建筑式样)翻译程序的畸形ELF文件导致服务拒绝(崩溃),并且当一个无效VMA未映射时,该漏洞可能引发一个BUG()。

漏洞公告

Linux kernel version 2.4.25 was released to address this issue.
Please see the references for more information and vendor advisories.
Linux kernel 2.4 .0-test3

Linux kernel 2.4 .0-test6

Linux kernel 2.4 .0-test8

Linux kernel 2.4 .0-test7

Linux kernel 2.4

Linux kernel 2.4 .0-test2

Linux kernel 2.4 .0-test11

Linux kernel 2.4 .0-test10

Linux kernel 2.4 .0-test4

Linux kernel 2.4 .0-test5

Linux kernel 2.4 .0-test1

Linux kernel 2.4 .0-test12

Linux kernel 2.4 .0-test9

Linux kernel 2.4.1

Linux kernel 2.4.10

Linux kernel 2.4.11

Linux kernel 2.4.12

Linux kernel 2.4.13

Linux kernel 2.4.14

Linux kernel 2.4.15

Linux kernel 2.4.16

Linux kernel 2.4.17

Linux kernel 2.4.18 pre-8

Linux kernel 2.4.18 pre-7

Linux kernel 2.4.18

Linux kernel 2.4.18 pre-6

Linux kernel 2.4.18 pre-3

Linux kernel 2.4.18 pre-2

  • Linux linux-2.4.25.tar.

参考网址

来源: DEBIAN
名称: DSA-1082
链接:http://www.debian.org/security/2006/dsa-1082

来源: DEBIAN
名称: DSA-1070
链接:http://www.debian.org/security/2006/dsa-1070

来源: DEBIAN
名称: DSA-1069
链接:http://www.debian.org/security/2006/dsa-1069

来源: DEBIAN
名称: DSA-1067
链接:http://www.debian.org/security/2006/dsa-1067

来源: SECUNIA
名称: 20202
链接:http://secunia.com/advisories/20202

来源: SECUNIA
名称: 20163
链接:http://secunia.com/advisories/20163

来源: SECUNIA
名称: 20162
链接:http://secunia.com/advisories/20162

来源: OVAL
名称: oval:org.mitre.oval:def:10123
链接:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10123

来源: linux.bkbits.net:8080
链接:http://linux.bkbits.net:8080/linux-2.4/cset@4021346f79nBb-4X_usRikR3Iyb4Vg

来源: kernel.debian.net
链接:http://kernel.debian.net/debian/pool/main/kernel-source-2.4.17/kernel-source-2.4.17_2.4.17-1woody4_ia64.changes

来源: XF
名称: linux-kernel-elfloader-dos(43124)
链接:http://xforce.iss.net/xforce/xfdb/43124

来源: BID
名称: 18174
链接:http://www.securityfocus.com/bid/18174

来源: REDHAT
名称: RHSA-2004:549
链接:http://www.redhat.com/support/errata/RHSA-2004-549.html

来源: REDHAT
名称: RHSA-2004:504
链接:http://www.redhat.com/support/errata/RHSA-2004-504.html

来源: SECUNIA
名称: 20338
链接:http://secunia.com/advisories/20338

来源: kernel.org
链接:http://kernel.org/pub/linux/kernel/v2.4/ChangeLog-2.4.25

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享