RHSA-2010:0079: Important: kernel security and bug fix update
The kernel packages contain the Linux kernel, the core of any Linuxoperating system.This update fixes the following security issues: a flaw was found in the IPv6 Extension Header (EH) handling implementation in the Linux kernel. The skb->dst data structure was notproperly validated in the ipv6hopjumbo() function. This could possiblylead to a remote denial of service. (CVE-2007-4567, Important) the possibility of a timeout value overflow was found in the Linux kernel high-resolution timers functionality, hrtimers. This could allow a local,unprivileged user to execute arbitrary code, or cause a denial of service(kernel panic). (CVE-2007-5966, Important) memory leaks were found on some error paths in the icmpsend() function in the Linux kernel. This could, potentially, cause the networkconnectivity to cease. (CVE-2009-0778, Important) a deficiency was found in the Linux kernel system call auditing implementation on 64-bit systems. This could allow a local, unprivilegeduser to circumvent a system call audit configuration, if that configurationfiltered based on the "syscall" number or arguments. (CVE-2009-0834,Important) a flaw was found in the Intel PRO/1000 Linux driver (e1000) in the Linux kernel. Frames with sizes near the MTU of an interface may be split acrossmultiple hardware receive descriptors. Receipt of such a frame could leakthrough a validation check, leading to a corruption of the length check. Aremote attacker could use this flaw to send a specially-crafted packet thatwould cause a denial of service or code execution. (CVE-2009-1385,Important) the ADDRCOMPATLAYOUT and MMAPPAGEZERO flags were not cleared when a setuid or setgid program was executed. A local, unprivileged user could usethis flaw to bypass the mmapminaddr protection mechanism and perform aNULL pointer dereference attack, or bypass the Address Space LayoutRandomization (ASLR) security feature. (CVE-2009-1895, Important) a flaw was found in each of the following Intel PRO/1000 Linux drivers in the Linux kernel: e1000 and e1000e. A remote attacker using packets largerthan the MTU could bypass the existing fragment check, resulting inpartial, invalid frames being passed to the network stack. These flawscould also possibly be used to trigger a remote denial of service.(CVE-2009-4536, CVE-2009-4538, Important) a flaw was found in the Realtek r8169 Ethernet driver in the Linux kernel. Receiving overly-long frames with a certain revision of the networkcards supported by this driver could possibly result in a remote denial ofservice. (CVE-2009-4537, Important)Note: This update also fixes several bugs. Documentation for these bugfixes will be available shortly fromwww.redhat.com/docs/en-US/errata/RHSA-2010-0079/KernelSecurityUpdate/index.htmlUsers should upgrade to these updated packages, which contain backportedpatches to correct these issues. The system must be rebooted for thisupdate to take effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2010:0079?
The severity of RHSA-2010:0079 is considered critical due to the potential for remote code execution through the IPv6 Extension Header handling flaw.
How do I fix RHSA-2010:0079?
To fix RHSA-2010:0079, you should update your Linux kernel packages to the latest version provided by your distribution.
What systems are affected by RHSA-2010:0079?
RHSA-2010:0079 affects various Linux distributions that utilize the specified kernel versions.
What vulnerabilities are addressed in RHSA-2010:0079?
RHSA-2010:0079 addresses vulnerabilities related to the flawed IPv6 Extension Header handling in the Linux kernel.
Is there a workaround for RHSA-2010:0079?
There are no recommended workarounds for RHSA-2010:0079, and updating the kernel is the necessary action for mitigation.