---------------------------------------------------------------------- Want a new job? http://secunia.com/secunia_security_specialist/ http://secunia.com/hardcore_disassembler_and_reverse_engineer/ International Partner Manager - Project Sales in the IT-Security Industry: http://corporate.secunia.com/about_secunia/64/ ---------------------------------------------------------------------- TITLE: SUSE update for kernel SECUNIA ADVISORY ID: SA31202 VERIFY ADVISORY: http://secunia.com/advisories/31202/ CRITICAL: Less critical IMPACT: Privilege escalation, DoS WHERE: >From remote OPERATING SYSTEM: openSUSE 11.0 http://secunia.com/product/19180/ DESCRIPTION: SUSE has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and potentially gain escalated privileges, and malicious people to cause a DoS (Denial of Service). For more information: SA30719 SA31048 1) An error within the LDT buffer size handling on x86_64 machines can be exploited by malicious, local users to cause a DoS and potentially gain escalated privileges. SOLUTION: Apply updated packages. x86 Platform: openSUSE 11.0: http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/kernel-debug-2.6.25.11-0.1.i586.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/kernel-default-2.6.25.11-0.1.i586.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/kernel-pae-2.6.25.11-0.1.i586.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/kernel-rt-2.6.25.11-0.1.i586.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/kernel-source-2.6.25.11-0.1.i586.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/kernel-syms-2.6.25.11-0.1.i586.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/kernel-vanilla-2.6.25.11-0.1.i586.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/i586/kernel-xen-2.6.25.11-0.1.i586.rpm Platform Independent: openSUSE 11.0: http://download.opensuse.org/pub/opensuse/update/11.0/rpm/noarch/kernel-docs-2.6.25.11-0.1.noarch.rpm Power PC Platform: openSUSE 11.0: http://download.opensuse.org/pub/opensuse/update/11.0/rpm/ppc/kernel-default-2.6.25.11-0.1.ppc.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/ppc/kernel-source-2.6.25.11-0.1.ppc.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/ppc/kernel-syms-2.6.25.11-0.1.ppc.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/ppc/kernel-vanilla-2.6.25.11-0.1.ppc.rpm x86-64 Platform: openSUSE 11.0: http://download.opensuse.org/pub/opensuse/update/11.0/rpm/x86_64/kernel-debug-2.6.25.11-0.1.x86_64.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/x86_64/kernel-default-2.6.25.11-0.1.x86_64.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/x86_64/kernel-rt-2.6.25.11-0.1.x86_64.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/x86_64/kernel-source-2.6.25.11-0.1.x86_64.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/x86_64/kernel-syms-2.6.25.11-0.1.x86_64.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/x86_64/kernel-vanilla-2.6.25.11-0.1.x86_64.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/x86_64/kernel-xen-2.6.25.11-0.1.x86_64.rpm Sources: openSUSE 11.0: http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/kernel-debug-2.6.25.11-0.1.nosrc.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/kernel-default-2.6.25.11-0.1.nosrc.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/kernel-docs-2.6.25.11-0.1.src.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/kernel-pae-2.6.25.11-0.1.nosrc.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/kernel-rt-2.6.25.11-0.1.nosrc.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/kernel-source-2.6.25.11-0.1.src.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/kernel-syms-2.6.25.11-0.1.src.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/kernel-vanilla-2.6.25.11-0.1.nosrc.rpm http://download.opensuse.org/pub/opensuse/update/11.0/rpm/src/kernel-xen-2.6.25.11-0.1.nosrc.rpm ORIGINAL ADVISORY: http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00009.html OTHER REFERENCES: SA30719: http://secunia.com/advisories/30719/ SA31048: http://secunia.com/advisories/31048/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------