** Description changed: - fs/partitions: Kernel heap overflow via corrupted LDM partition tables. - Different issue than CVE-2011-1017 + The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel + before 2.6.39.1 does not properly handle memory allocation for non- + initial fragments, which might allow local users to conduct buffer + overflow attacks, and gain privileges or obtain sensitive information, + via a crafted LDM partition table. NOTE: this vulnerability exists + because of an incomplete fix for CVE-2011-1017. Break-Fix: - cae13fe4cc3f24820ffb990c09110626837e85d4
-- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/922371 Title: CVE-2011-2182 To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/922371/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
