SB2005100701 - Unimplemented or unsupported feature in ui in Linux kernel
Published: October 7, 2005
Security Bulletin ID
SB2005100701
Severity
Low
Patch available
YES
Number of vulnerabilities
1
Exploitation vector
Local access
Highest impact
Denial of service
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Unimplemented or unsupported feature in ui (CVE-ID: CVE-2005-1764)
The vulnerability allows a local user to perform service disruption.
Linux 2.6.11 on 64-bit x86 (x86_64) platforms does not use a guard page for the 47-bit address page to protect against an AMD K8 bug, which allows local users to cause a denial of service.
Remediation
Install update from vendor's website.
References
- http://freshmeat.net/articles/view/1678/
- http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=637716a3825e186555361574aa1fa3c0ebf8018b
- http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=637716a3825e186555361574aa1fa3c0ebf8018b
- http://www.mandriva.com/security/advisories?name=MDKSA-2005:220
- http://www.securityfocus.com/bid/13904
- https://exchange.xforce.ibmcloud.com/vulnerabilities/43324