[linux-source] [CVE-2007-5966] integer overflow in the hrtimer_start function in kernel/hrtimer.c, local vulnerabilty

Bug #180289 reported by disabled.user
254
Affects Status Importance Assigned to Milestone
linux-meta (Ubuntu)
Invalid
Undecided
Alessio Igor Bogani
linux-source-2.6.17 (Ubuntu)
Fix Released
Undecided
Unassigned
linux-source-2.6.20 (Ubuntu)
Fix Released
Undecided
Unassigned
linux-source-2.6.22 (Ubuntu)
Fix Released
Undecided
Unassigned

Bug Description

Binary package hint: linux-source

References:
CVE-2007-5966 (http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5966)

Quoting:
"Integer overflow in the hrtimer_start function in kernel/hrtimer.c in the Linux kernel before 2.6.23.10 allows local users to execute arbitrary code or cause a denial of service (panic) via a large relative timeout value. NOTE: some of these details are obtained from third party information."

CVE References

Revision history for this message
Alessio Igor Bogani (abogani) wrote :

No bugs should be assigned on -meta package.

Changed in linux-meta:
assignee: nobody → abogani
status: New → Invalid
Revision history for this message
Alessio Igor Bogani (abogani) wrote :

As reported here http://www.ubuntu.com/usn/usn-574-1 this bug is fixed.

Changed in linux-source-2.6.17:
status: New → Fix Released
Changed in linux-source-2.6.20:
status: New → Fix Released
Changed in linux-source-2.6.22:
status: New → Fix Released
Revision history for this message
disabled.user (disabled.user-deactivatedaccount) wrote :

Launchpad automatically sets "linux-meta" if a bug is reported against "linux-source".

To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.