RHSA-2011:0842: Moderate: systemtap security update
SystemTap is an instrumentation system for systems running the Linuxkernel, version 2.6. Developers can write scripts to collect data on theoperation of the system.Two divide-by-zero flaws were found in the way SystemTap handled malformeddebugging information in DWARF format. When SystemTap unprivileged mode wasenabled, an unprivileged user in the stapusr group could use these flaws tocrash the system. Additionally, a privileged user (root, or a member of thestapdev group) could trigger these flaws when tricked into instrumenting aspecially-crafted ELF binary, even when unprivileged mode was not enabled.(CVE-2011-1769, CVE-2011-1781)SystemTap users should upgrade to these updated packages, which contain abackported patch to correct these issues.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2011:0842?
The severity of RHSA-2011:0842 is classified as moderate.
How do I fix RHSA-2011:0842?
To fix RHSA-2011:0842, update the affected packages to version 1.4-6.el6_1.1.
Which packages are affected by RHSA-2011:0842?
The affected packages include systemtap, systemtap-client, systemtap-debuginfo, and others.
What vulnerabilities are associated with RHSA-2011:0842?
RHSA-2011:0842 addresses two divide-by-zero flaws in SystemTap handling malformed debugging information.
What systems are impacted by RHSA-2011:0842?
RHSA-2011:0842 impacts systems running the specific version of the Linux kernel that uses SystemTap.