** Changed in: linux-ec2 (Ubuntu Lucid)
Status: New => Invalid
** Changed in: linux-lts-backport-natty (Ubuntu Lucid)
Status: New => Invalid
** Changed in: linux-mvl-dove (Ubuntu Lucid)
Status: New => Invalid
** Changed in: linux-mvl-dove (Ubuntu Maverick)
Status: New => Invalid
** Changed in: linux-lts-backport-maverick (Ubuntu Lucid)
Status: New => Invalid
** Changed in: linux (Ubuntu Lucid)
Status: New => Invalid
** Changed in: linux (Ubuntu Oneiric)
Status: New => Invalid
** Changed in: linux (Ubuntu Hardy)
Status: New => Invalid
** Changed in: linux (Ubuntu Maverick)
Status: New => Invalid
** Changed in: linux (Ubuntu Natty)
Status: New => Invalid
** Changed in: linux-ti-omap4 (Ubuntu Oneiric)
Status: New => Fix Committed
** Changed in: linux-ti-omap4 (Ubuntu Maverick)
Status: New => Invalid
** Changed in: linux-ti-omap4 (Ubuntu Natty)
Status: New => Invalid
** Changed in: linux-fsl-imx51 (Ubuntu Lucid)
Status: New => Invalid
** Description changed:
The key_replace_session_keyring function in security/keys/process_keys.c
in the Linux kernel before 2.6.39.1 does not initialize a certain
structure member, which allows local users to cause a denial of service
(NULL pointer dereference and OOPS) or possibly have unspecified other
impact via a KEYCTL_SESSION_TO_PARENT argument to the keyctl function, a
different vulnerability than CVE-2010-2960.
+
+ Break-Fix: 47a150edc2ae734c0f4bf50aa19499e23b9a46f8
+ f7285b5d631fd6096b11c6af0058ed3a2b30ef4e
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/844367
Title:
CVE-2011-2184
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/844367/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs