First published: Mon Jun 19 2017(Updated: )
The kernel packages contain the Linux kernel, the core of any Linux operating<br>system.<br>Security Fix(es):<br><li> A flaw was found in the way memory was being allocated on the stack for user</li> space binaries. If heap (or different memory region) and stack memory regions<br>were adjacent to each other, an attacker could use this flaw to jump over the<br>stack guard gap, cause controlled memory corruption on process stack or the<br>adjacent memory region, and thus increase their privileges on the system. This<br>is a kernel-side mitigation which increases the stack guard gap size from one<br>page to 1 MiB to make successful exploitation of this issue more difficult.<br>(CVE-2017-1000364, Important)<br>Red Hat would like to thank Qualys Research Labs for reporting this issue.<br>
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debug | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debug-debuginfo | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debug-devel | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debuginfo | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debuginfo-common | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-devel | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-doc | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-headers | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-xen | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-xen-debuginfo | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-xen-devel | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debug | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debug-debuginfo | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debug-devel | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debuginfo | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-debuginfo-common | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-devel | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-headers | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-xen | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-xen-debuginfo | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-xen-devel | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-kdump | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-kdump-debuginfo | <2.6.18-420.el5 | 2.6.18-420.el5 |
redhat/kernel-kdump-devel | <2.6.18-420.el5 | 2.6.18-420.el5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.