RHSA-2007:1104: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linuxoperating system. These updated packages fix the following security issues:A flaw was found in the handling of IEEE 802.11 frames, which affectedseveral wireless LAN modules. In certain situations, a remote attackercould trigger this flaw by sending a malicious packet over a wirelessnetwork, causing a denial of service (kernel crash).(CVE-2007-4997, Important)A memory leak was found in the Red Hat Content Accelerator kernel patch.A local user could use this flaw to cause a denial of service (memoryexhaustion). (CVE-2007-5494, Important)Additionally, the following bugs were fixed: when running the "ls -la" command on an NFSv4 mount point, incorrect file attributes, and outdated file size and timestamp information werereturned. As well, symbolic links may have been displayed as actual files. a bug which caused the cmirror write path to appear deadlocked after a successful recovery, which may have caused syncing to hang, has beenresolved. a kernel panic which occurred when manually configuring LCS interfaces on the IBM S/390 has been resolved. when running a 32-bit binary on a 64-bit system, it was possible to mmap page at address 0 without flag MAPFIXED set. This has beenresolved in these updated packages. the Non-Maskable Interrupt (NMI) Watchdog did not increment the NMI interrupt counter in "/proc/interrupts" on systems running an AMD OpteronCPU. This caused systems running NMI Watchdog to restart at regularintervals. a bug which caused the diskdump utility to run very slowly on devices using Fusion MPT has been resolved.All users are advised to upgrade to these updated packages, which resolvethese issues.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2007:1104?
The severity of RHSA-2007:1104 is classified as important due to the potential impact on wireless LAN security.
How do I fix RHSA-2007:1104?
To fix RHSA-2007:1104, users should update their kernel packages to the latest version provided by the vendor.
What are the main vulnerabilities addressed in RHSA-2007:1104?
RHSA-2007:1104 addresses vulnerabilities related to the handling of IEEE 802.11 frames in wireless LAN modules.
Are all kernel versions affected by RHSA-2007:1104?
Not all kernel versions are affected; it is essential to verify the specific versions listed in the advisory.
What systems are impacted by RHSA-2007:1104?
Systems running affected versions of the Linux kernel are impacted by RHSA-2007:1104.