RHSA-2011:0007: Important: kernel security and bug fix update

Published Jan 11, 2011
·
Updated

Buffer overflow in eCryptfs. When /dev/ecryptfs has world writable permissions (which it does not, by default, on Red Hat Enterprise Linux 6),a local, unprivileged user could use this flaw to cause a denial of serviceor possibly escalate their privileges. (CVE-2010-2492, Important) Integer overflow in the RDS protocol implementation could allow a local, unprivileged user to cause a denial of service or escalate theirprivileges. (CVE-2010-3865, Important) Missing boundary checks in the PPP over L2TP sockets implementation could allow a local, unprivileged user to cause a denial of service or escalatetheir privileges. (CVE-2010-4160, Important) NULL pointer dereference in the igb driver. If both Single Root I/O Virtualization (SR-IOV) and promiscuous mode were enabled on an interfaceusing igb, it could result in a denial of service when a tagged VLAN packetis received on that interface. (CVE-2010-4263, Important) Missing initialization flaw in the XFS file system implementation, and in the network traffic policing implementation, could allow a local,unprivileged user to cause an information leak. (CVE-2010-3078,CVE-2010-3477, Moderate) NULL pointer dereference in the Open Sound System compatible sequencer driver could allow a local, unprivileged user with access to /dev/sequencerto cause a denial of service. /dev/sequencer is only accessible to root andusers in the audio group by default. (CVE-2010-3080, Moderate) Flaw in the ethtool IOCTL handler could allow a local user to cause an information leak. (CVE-2010-3861, Moderate) Flaw in bcmconnect() in the Controller Area Network (CAN) Broadcast Manager. On 64-bit systems, writing the socket address may overflow theprocname character array. (CVE-2010-3874, Moderate) Flaw in the module for monitoring the sockets of INET transport protocols could allow a local, unprivileged user to cause a denial ofservice. (CVE-2010-3880, Moderate) Missing boundary checks in the block layer implementation could allow a local, unprivileged user to cause a denial of service. (CVE-2010-4162,CVE-2010-4163, CVE-2010-4668, Moderate) NULL pointer dereference in the Bluetooth HCI UART driver could allow a local, unprivileged user to cause a denial of service. (CVE-2010-4242,Moderate) Flaw in the Linux kernel CPU time clocks implementation for the POSIX clock interface could allow a local, unprivileged user to cause a denial ofservice. (CVE-2010-4248, Moderate) Flaw in the garbage collector for AFUNIX sockets could allow a local, unprivileged user to trigger a denial of service. (CVE-2010-4249, Moderate) Missing upper bound integer check in the AIO implementation could allow a local, unprivileged user to cause an information leak. (CVE-2010-3067, Low) Missing initialization flaws could lead to information leaks. (CVE-2010-3298, CVE-2010-3876, CVE-2010-4072, CVE-2010-4073, CVE-2010-4074,CVE-2010-4075, CVE-2010-4077, CVE-2010-4079, CVE-2010-4080, CVE-2010-4081,CVE-2010-4082, CVE-2010-4083, CVE-2010-4158, Low) Missing initialization flaw in KVM could allow a privileged host user with access to /dev/kvm to cause an information leak. (CVE-2010-4525, Low)Red Hat would like to thank Andre Osterhues for reporting CVE-2010-2492;Thomas Pollet for reporting CVE-2010-3865; Dan Rosenberg for reportingCVE-2010-4160, CVE-2010-3078, CVE-2010-3874, CVE-2010-4162, CVE-2010-4163,CVE-2010-3298, CVE-2010-4073, CVE-2010-4074, CVE-2010-4075, CVE-2010-4077,CVE-2010-4079, CVE-2010-4080, CVE-2010-4081, CVE-2010-4082, CVE-2010-4083,and CVE-2010-4158; Kosuke Tatsukawa for reporting CVE-2010-4263; TavisOrmandy for reporting CVE-2010-3080 and CVE-2010-3067; Kees Cook forreporting CVE-2010-3861 and CVE-2010-4072; Nelson Elhage for reportingCVE-2010-3880; Alan Cox for reporting CVE-2010-4242; Vegard Nossum forreporting CVE-2010-4249; Vasiliy Kulikov for reporting CVE-2010-3876; andStephan Mueller of atsec information security for reporting CVE-2010-4525.

Affected Software

24 affected componentsFixes available
redhat/kernel<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debug<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debug-debuginfo<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debug-devel<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debuginfo<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-devel<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-doc<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-firmware<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-headers<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/perf<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debug<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debug-debuginfo<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debug-devel<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debuginfo<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debuginfo-common-i686<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-devel<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-headers<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debuginfo-common-s390x<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-kdump<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-kdump-debuginfo<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-kdump-devel<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-bootwrapper<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6
redhat/kernel-debuginfo-common-ppc64<2.6.32-71.14.1.el6
2.6.32-71.14.1.el6

Remediation

Event History

Jan 11, 2011
Advisory Published
12:00 AM
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of RHSA-2011:0007?

RHSA-2011:0007 is considered a moderate severity vulnerability due to the potential for local privilege escalation or denial of service.

2

How do I fix RHSA-2011:0007?

To address RHSA-2011:0007, ensure that your system is updated to the kernel version 2.6.32-71.14.1.el6 or higher.

3

Who is affected by RHSA-2011:0007?

RHSA-2011:0007 affects users of Red Hat Enterprise Linux 6 with eCryptfs when /dev/ecryptfs permissions are incorrectly set.

4

What causes the vulnerability in RHSA-2011:0007?

The vulnerability in RHSA-2011:0007 is caused by a buffer overflow in eCryptfs due to world writable permissions.

5

Is there a risk of data loss with RHSA-2011:0007?

While there is a risk of privilege escalation and denial of service, data loss is not directly indicated as a primary consequence of RHSA-2011:0007.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203