** Description changed:

- fs/partitions: Kernel heap overflow via corrupted LDM partition tables.
- Different issue than CVE-2011-1017
+ The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel
+ before 2.6.39.1 does not properly handle memory allocation for non-
+ initial fragments, which might allow local users to conduct buffer
+ overflow attacks, and gain privileges or obtain sensitive information,
+ via a crafted LDM partition table.  NOTE: this vulnerability exists
+ because of an incomplete fix for CVE-2011-1017.
  
  Break-Fix: - cae13fe4cc3f24820ffb990c09110626837e85d4

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/922371

Title:
  CVE-2011-2182

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/922371/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to