First published: Wed Jun 13 2012(Updated: )
Integer overflow in the sys_oabi_semtimedop function in arch/arm/kernel/sys_oabi-compat.c in the Linux kernel before 2.6.39 on the ARM platform, when CONFIG_OABI_COMPAT is enabled, allows local users to gain privileges or cause a denial of service (heap memory corruption) by providing a crafted argument and leveraging a race condition.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/linux-2.6 | ||
Linux kernel | =2.6.38-rc7 | |
Linux kernel | =2.6.38-rc6 | |
Linux kernel | =2.6.38-rc4 | |
Linux kernel | =2.6.38.3 | |
Linux kernel | <=2.6.38.8 | |
Linux kernel | =2.6.38-rc3 | |
Linux kernel | =2.6.38-rc5 | |
Linux kernel | =2.6.38-rc2 | |
Linux kernel | =2.6.38.6 | |
Linux kernel | =2.6.38.1 | |
Linux kernel | =2.6.38-rc1 | |
Linux kernel | =2.6.38.5 | |
Linux kernel | =2.6.38.2 | |
Linux kernel | =2.6.38 | |
Linux kernel | =2.6.38-rc8 | |
Linux kernel | =2.6.38.4 | |
Linux kernel | =2.6.38.7 | |
Linux Kernel | <=2.6.38.8 | |
Linux Kernel | =2.6.38 | |
Linux Kernel | =2.6.38-rc1 | |
Linux Kernel | =2.6.38-rc2 | |
Linux Kernel | =2.6.38-rc3 | |
Linux Kernel | =2.6.38-rc4 | |
Linux Kernel | =2.6.38-rc5 | |
Linux Kernel | =2.6.38-rc6 | |
Linux Kernel | =2.6.38-rc7 | |
Linux Kernel | =2.6.38-rc8 | |
Linux Kernel | =2.6.38.1 | |
Linux Kernel | =2.6.38.2 | |
Linux Kernel | =2.6.38.3 | |
Linux Kernel | =2.6.38.4 | |
Linux Kernel | =2.6.38.5 | |
Linux Kernel | =2.6.38.6 | |
Linux Kernel | =2.6.38.7 | |
<=2.6.38.8 | ||
=2.6.38 | ||
=2.6.38-rc1 | ||
=2.6.38-rc2 | ||
=2.6.38-rc3 | ||
=2.6.38-rc4 | ||
=2.6.38-rc5 | ||
=2.6.38-rc6 | ||
=2.6.38-rc7 | ||
=2.6.38-rc8 | ||
=2.6.38.1 | ||
=2.6.38.2 | ||
=2.6.38.3 | ||
=2.6.38.4 | ||
=2.6.38.5 | ||
=2.6.38.6 | ||
=2.6.38.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1759 is classified as a high severity vulnerability due to its potential to allow local users to gain privileges or cause a denial of service.
To fix CVE-2011-1759, update your Linux kernel to version 2.6.39 or later.
CVE-2011-1759 affects local users on systems running vulnerable versions of the Linux kernel with CONFIG_OABI_COMPAT enabled.
CVE-2011-1759 is an integer overflow vulnerability that can lead to heap memory corruption.
CVE-2011-1759 affects Linux kernel versions prior to 2.6.39, including various 2.6.38 releases.