** Changed in: linux-ec2 (Ubuntu Lucid)
       Status: New => Invalid

** Changed in: linux-lts-backport-natty (Ubuntu Lucid)
       Status: New => Invalid

** Changed in: linux-mvl-dove (Ubuntu Lucid)
       Status: New => Invalid

** Changed in: linux-mvl-dove (Ubuntu Maverick)
       Status: New => Invalid

** Changed in: linux-lts-backport-maverick (Ubuntu Lucid)
       Status: New => Invalid

** Changed in: linux (Ubuntu Lucid)
       Status: New => Invalid

** Changed in: linux (Ubuntu Oneiric)
       Status: New => Invalid

** Changed in: linux (Ubuntu Hardy)
       Status: New => Invalid

** Changed in: linux (Ubuntu Maverick)
       Status: New => Invalid

** Changed in: linux (Ubuntu Natty)
       Status: New => Invalid

** Changed in: linux-ti-omap4 (Ubuntu Oneiric)
       Status: New => Fix Committed

** Changed in: linux-ti-omap4 (Ubuntu Maverick)
       Status: New => Invalid

** Changed in: linux-ti-omap4 (Ubuntu Natty)
       Status: New => Invalid

** Changed in: linux-fsl-imx51 (Ubuntu Lucid)
       Status: New => Invalid

** Description changed:

  The key_replace_session_keyring function in security/keys/process_keys.c
  in the Linux kernel before 2.6.39.1 does not initialize a certain
  structure member, which allows local users to cause a denial of service
  (NULL pointer dereference and OOPS) or possibly have unspecified other
  impact via a KEYCTL_SESSION_TO_PARENT argument to the keyctl function, a
  different vulnerability than CVE-2010-2960.
+ 
+ Break-Fix: 47a150edc2ae734c0f4bf50aa19499e23b9a46f8
+ f7285b5d631fd6096b11c6af0058ed3a2b30ef4e

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/844367

Title:
  CVE-2011-2184

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/844367/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to