~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
PublicDateAtUSN: 2011-05-02
Candidate: CVE-2011-1759
PublicDate: 2012-06-13
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1759
 http://marc.info/?l=linux-kernel&m=130408851326428&w=2
 http://www.ubuntu.com/usn/usn-1167-1
 http://www.ubuntu.com/usn/usn-1168-1
 http://www.ubuntu.com/usn/usn-1341-1
 http://www.ubuntu.com/usn/usn-1162-1
 http://www.ubuntu.com/usn/usn-1159-1
 http://www.ubuntu.com/usn/usn-1161-1
 http://www.ubuntu.com/usn/usn-1383-1
 http://www.ubuntu.com/usn/usn-1394-1
 http://www.ubuntu.com/usn/usn-1332-1
Description:
 Integer overflow in the sys_oabi_semtimedop function in
 arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 2.6.39 on the
 ARM platform, when CONFIG_OABI_COMPAT is enabled, allows local users to
 gain privileges or cause a denial of service (heap memory corruption) by
 providing a crafted argument and leveraging a race condition.
Ubuntu-Description:
 Dan Rosenberg reported an error in the old ABI compatibility layer of ARM
 kernels. A local attacker could exploit this flaw to cause a denial of
 service or gain root privileges.
Notes:
Bugs:
 https://launchpad.net/bugs/925373
Priority: low
Discovered-by:
Assigned-to:

Patches_linux:
 break-fix: - 0f22072ab50cac7983f9660d33974b45184da4f9
upstream_linux: released (2.6.39~rc6)
hardy_linux: not-affected (ARM specific issue)
lucid_linux: released (2.6.32-33.64)
maverick_linux: released (2.6.35-32.64)
natty_linux: released (2.6.38-10.44)
oneiric_linux: not-affected (2.6.39-1.6)
precise_linux: not-affected (3.1.0-1.1)
quantal_linux: not-affected (3.1.0-1.0)
devel_linux: not-affected (3.1.0-1.0)

Patches_linux-ec2:
upstream_linux-ec2: released (2.6.39~rc6)
hardy_linux-ec2: DNE
lucid_linux-ec2: released (2.6.32-317.32)
maverick_linux-ec2: ignored (binary supplied by "linux" now)
natty_linux-ec2: DNE
oneiric_linux-ec2: DNE
precise_linux-ec2: DNE
quantal_linux-ec2: DNE
devel_linux-ec2: DNE

Patches_linux-mvl-dove:
upstream_linux-mvl-dove: released (2.6.39~rc6)
hardy_linux-mvl-dove: DNE
lucid_linux-mvl-dove: released (2.6.32-217.34)
maverick_linux-mvl-dove: released (2.6.32-417.34)
natty_linux-mvl-dove: DNE
oneiric_linux-mvl-dove: DNE
precise_linux-mvl-dove: DNE
quantal_linux-mvl-dove: DNE
devel_linux-mvl-dove: DNE

Patches_linux-ti-omap4:
upstream_linux-ti-omap4: released (2.6.39~rc6)
hardy_linux-ti-omap4: DNE
lucid_linux-ti-omap4: DNE
maverick_linux-ti-omap4: released (2.6.35-903.31)
natty_linux-ti-omap4: released (2.6.38-1209.22)
oneiric_linux-ti-omap4: not-affected (3.0.0-1200.1)
precise_linux-ti-omap4: not-affected (3.0.0-1401.2)
quantal_linux-ti-omap4: not-affected (3.0.0-1401.2)
devel_linux-ti-omap4: not-affected (3.0.0-1401.2)

Patches_linux-lts-backport-maverick:
upstream_linux-lts-backport-maverick: released (2.6.39~rc6)
hardy_linux-lts-backport-maverick: DNE
lucid_linux-lts-backport-maverick: released (2.6.35-32.64~lucid1)
maverick_linux-lts-backport-maverick: DNE
natty_linux-lts-backport-maverick: DNE
oneiric_linux-lts-backport-maverick: DNE
precise_linux-lts-backport-maverick: DNE
quantal_linux-lts-backport-maverick: DNE
devel_linux-lts-backport-maverick: DNE

Patches_linux-fsl-imx51:
upstream_linux-fsl-imx51: released (2.6.39~rc6)
hardy_linux-fsl-imx51: DNE
lucid_linux-fsl-imx51: not-affected (CONFIG_OABI_COMPAT is not set)
maverick_linux-fsl-imx51: DNE
natty_linux-fsl-imx51: DNE
oneiric_linux-fsl-imx51: DNE
precise_linux-fsl-imx51: DNE
quantal_linux-fsl-imx51: DNE
devel_linux-fsl-imx51: DNE

Patches_linux-lts-backport-natty:
upstream_linux-lts-backport-natty: released (2.6.39~rc6)
hardy_linux-lts-backport-natty: DNE
lucid_linux-lts-backport-natty: not-affected (2.6.38-10.44~lucid1)
maverick_linux-lts-backport-natty: DNE
natty_linux-lts-backport-natty: DNE
oneiric_linux-lts-backport-natty: DNE
precise_linux-lts-backport-natty: DNE
quantal_linux-lts-backport-natty: DNE
devel_linux-lts-backport-natty: DNE

Patches_linux-lts-backport-oneiric:
upstream_linux-lts-backport-oneiric: released (2.6.39~rc6)
hardy_linux-lts-backport-oneiric: DNE
lucid_linux-lts-backport-oneiric: not-affected (3.0.0-5.6~lucid1)
maverick_linux-lts-backport-oneiric: DNE
natty_linux-lts-backport-oneiric: DNE
oneiric_linux-lts-backport-oneiric: DNE
precise_linux-lts-backport-oneiric: DNE
quantal_linux-lts-backport-oneiric: DNE
devel_linux-lts-backport-oneiric: DNE

Patches_linux-armadaxp:
upstream_linux-armadaxp: released (2.6.39~rc6)
hardy_linux-armadaxp: DNE
lucid_linux-armadaxp: DNE
natty_linux-armadaxp: DNE
oneiric_linux-armadaxp: DNE
precise_linux-armadaxp: not-affected (3.2.0-1600.1)
quantal_linux-armadaxp: not-affected (3.2.0-1602.5)
devel_linux-armadaxp: not-affected (3.2.0-1602.5)