RHSA-2010:0661: Important: kernel security update
The kernel packages contain the Linux kernel, the core of any Linuxoperating system.This update fixes the following security issue: when an application has a stack overflow, the stack could silently overwrite another memory mapped area instead of a segmentation faultoccurring, which could cause an application to execute arbitrary code,possibly leading to privilege escalation. It is known that the X WindowSystem server can be used to trigger this flaw. (CVE-2010-2240, Important)Red Hat would like to thank the X.Org security team for reporting thisissue. Upstream acknowledges Rafal Wojtczuk as the original reporter.Users should upgrade to these updated packages, which contain backportedpatches to correct this issue. The system must be rebooted for this updateto take effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2010:0661?
The severity of RHSA-2010:0661 is classified as important.
How do I fix RHSA-2010:0661?
To fix RHSA-2010:0661, you need to update the kernel package to version 2.6.18-194.11.3.el5.
What is the vulnerability addressed by RHSA-2010:0661?
RHSA-2010:0661 addresses a stack overflow issue that could allow an application to overwrite memory, potentially leading to serious security risks.
Which software packages are affected by RHSA-2010:0661?
Affected packages include kernel, kernel-debug, kernel-devel, and several others related to the Linux kernel with specific 2.6.18-194.11.3.el5 versions.
When was RHSA-2010:0661 released?
RHSA-2010:0661 was released on the announcement date noted by Red Hat for security advisories.