~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2010-2248

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
PublicDateAtUSN: 2010-09-07
2
 
Candidate: CVE-2010-2248
3
 
PublicDate: 2010-09-07
4
 
References:
5
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2248
6
 
 http://www.openwall.com/lists/oss-security/2010/06/28/1
7
 
 https://usn.ubuntu.com/usn/usn-1000-1
8
 
 https://usn.ubuntu.com/usn/usn-1074-1
9
 
 https://usn.ubuntu.com/usn/usn-1074-2
10
 
 https://usn.ubuntu.com/usn/usn-1083-1
11
 
Description:
12
 
 fs/cifs/cifssmb.c in the CIFS implementation in the Linux kernel before
13
 
 2.6.34-rc4 allows remote attackers to cause a denial of service (panic) via
14
 
 an SMB response packet with an invalid CountHigh value, as demonstrated by
15
 
 a response from an OS/2 server, related to the CIFSSMBWrite and
16
 
 CIFSSMBWrite2 functions.
17
 
Ubuntu-Description:
18
 
 Suresh Jayaraman discovered that CIFS did not correctly validate certain
19
 
 response packats. A remote attacker could send specially crafted traffic
20
 
 that would crash the system, leading to a denial of service.
21
 
Notes:
22
 
Bugs:
23
 
Priority: medium
24
 
Discovered-by:
25
 
Assigned-to: bradf
26
 
 
27
 
Patches_linux-source-2.6.15:
28
 
 dapper: http://chinstrap.ubuntu.com/~bradf/CVEs/CVE-2010-2248/patches/dapper/linux/0001-cifs-Fix-a-kernel-BUG-with-remote-OS-2-server-try-3.txt
29
 
upstream_linux-source-2.6.15: needs-triage
30
 
dapper_linux-source-2.6.15: released (2.6.15-55.89)
31
 
hardy_linux-source-2.6.15: DNE
32
 
jaunty_linux-source-2.6.15: DNE
33
 
karmic_linux-source-2.6.15: DNE
34
 
lucid_linux-source-2.6.15: DNE
35
 
maverick_linux-source-2.6.15: DNE
36
 
devel_linux-source-2.6.15: DNE
37
 
 
38
 
Patches_linux:
39
 
  upstream: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=6513a81e9325d712f1bfb9a1d7b750134e49ff18
40
 
 hardy: http://chinstrap.ubuntu.com/~bradf/CVEs/CVE-2010-2248/patches/hardy/linux/0001-cifs-Fix-a-kernel-BUG-with-remote-OS-2-server-try-3.txt
41
 
 jaunty: http://chinstrap.ubuntu.com/~bradf/CVEs/CVE-2010-2248/patches/jaunty/linux/0001-cifs-Fix-a-kernel-BUG-with-remote-OS-2-server-try-3.txt
42
 
 karmic: http://chinstrap.ubuntu.com/~bradf/CVEs/CVE-2010-2248/patches/karmic/linux/0001-cifs-Fix-a-kernel-BUG-with-remote-OS-2-server-try-3.txt
43
 
upstream_linux: released (2.6.34-rc4)
44
 
dapper_linux: DNE
45
 
hardy_linux: released (2.6.24-28.80)
46
 
jaunty_linux: released (2.6.28-19.66)
47
 
karmic_linux: released (2.6.31-22.67)
48
 
lucid_linux: released (2.6.32-23.37)
49
 
maverick_linux: not-affected
50
 
devel_linux: not-affected
51
 
 
52
 
Patches_linux-fsl-imx51:
53
 
upstream_linux-fsl-imx51: needs-triage
54
 
dapper_linux-fsl-imx51: DNE
55
 
hardy_linux-fsl-imx51: DNE
56
 
karmic_linux-fsl-imx51: released (2.6.31-112.30)
57
 
lucid_linux-fsl-imx51: released (2.6.31-608.22)
58
 
maverick_linux-fsl-imx51: DNE
59
 
devel_linux-fsl-imx51: DNE
60
 
 
61
 
Patches_linux-ec2:
62
 
upstream_linux-ec2: needs-triage
63
 
dapper_linux-ec2: DNE
64
 
hardy_linux-ec2: DNE
65
 
karmic_linux-ec2: released (2.6.31-307.21)
66
 
lucid_linux-ec2: released (2.6.32-309.18)
67
 
maverick_linux-ec2: ignored (binary supplied by "linux" now)
68
 
devel_linux-ec2: DNE
69
 
 
70
 
Patches_linux-lts-backport-maverick:
71
 
upstream_linux-lts-backport-maverick: needs-triage
72
 
dapper_linux-lts-backport-maverick: DNE
73
 
hardy_linux-lts-backport-maverick: DNE
74
 
karmic_linux-lts-backport-maverick: DNE
75
 
lucid_linux-lts-backport-maverick: released (2.6.35-25.44~lucid1)
76
 
maverick_linux-lts-backport-maverick: DNE
77
 
devel_linux-lts-backport-maverick: DNE