Linux内核 拒绝服务攻击漏洞

漏洞信息详情

Linux内核 拒绝服务攻击漏洞

漏洞简介

本地用户可以借助Linux内核2.4.x及2.6.x,通过mlockall调用实施拒绝服务攻击(CPU和内存消耗)并绕过RLIM_MEMLOCK限制。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

Linux kernel 2.6.9

Fedora kernel-2.6.10-1.737_FC3.i586.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora kernel-2.6.10-1.737_FC3.i686.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora kernel-2.6.10-1.737_FC3.x86_64.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora kernel-debuginfo-2.6.10-1.737_FC3.i586.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora kernel-debuginfo-2.6.10-1.737_FC3.i686.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora kernel-debuginfo-2.6.10-1.737_FC3.x86_64.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora kernel-doc-2.6.10-1.737_FC3.noarch.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora kernel-smp-2.6.10-1.737_FC3.i586.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora kernel-smp-2.6.10-1.737_FC3.i686.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ kernel-smp-2.6.10-1.737_FC3.x86_64.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

参考网址

来源: REDHAT

名称: RHSA-2005:092

链接:http://www.redhat.com/support/errata/RHSA-2005-092.html

来源: FULLDISC

名称: 20050107 grsecurity 2.1.0 release / 5 Linux kernel advisories

链接:http://lists.grok.org.uk/pipermail/full-disclosure/2005-January/030660.html

来源: CONECTIVA

名称: CLA-2005:930

链接:http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000930

来源: REDHAT

名称: RHSA-2005:663

链接:http://www.redhat.com/support/errata/RHSA-2005-663.html

来源: VUPEN

名称: ADV-2005-1878

链接:http://www.frsirt.com/english/advisories/2005/1878

来源: SECUNIA

名称: 17002

链接:http://secunia.com/advisories/17002

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享