kernel-image: user application can hang the kernel

Bug #6817 reported by Debian Bug Importer
6
Affects Status Importance Assigned to Milestone
linux-source-2.6.15 (Debian)
Fix Released
Unknown
linux-source-2.6.15 (Ubuntu)
Fix Released
High
Matt Zimmerman

Bug Description

Automatically imported from Debian bug report #253871
http://bugs.debian.org/253871

CVE References

Revision history for this message
In , Petter Reinholdtsen (pere-hungry) wrote :

retitle 253871 CAN-2004-0554 user application can hang the kernel
thanks

The problem now has a CVE referense. It is available from
<URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0554 >.

Revision history for this message
Debian Bug Importer (debzilla) wrote :

Automatically imported from Debian bug report #253871
http://bugs.debian.org/253871

Revision history for this message
Debian Bug Importer (debzilla) wrote :

Message-Id: <email address hidden>
Date: Fri, 11 Jun 2004 17:27:18 +0200
From: Petter Reinholdtsen <email address hidden>
To: <email address hidden>
Subject: kernel-image: user application can hang the kernel

Package: kernel-image-2.4.26-i386
Version: 2.4.26-1
Severity: grave
Tags: security

The message
<URL:http://marc.theaimsgroup.com/?l=linux-kernel&m=108681568931323&w=2>
on linux-kernel report that a simple C program available from
<URL:http://gcc.gnu.org/bugzilla/show_bug.cgi?id=15905> is able to
hang the kernel hard.

I tested the program on a machine running the kernel from the debian
archive, and it was able to hang the machine completely.

Revision history for this message
Debian Bug Importer (debzilla) wrote :

Message-Id: <email address hidden>
Date: Tue, 15 Jun 2004 10:25:09 +0200
From: Petter Reinholdtsen <email address hidden>
To: <email address hidden>
Subject: Re: kernel-image: user application can hang the kernel

retitle 253871 CAN-2004-0554 user application can hang the kernel
thanks

The problem now has a CVE referense. It is available from
<URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0554 >.

Revision history for this message
Matt Zimmerman (mdz) wrote :

Assigning this to myself as a security issue

Revision history for this message
Matt Zimmerman (mdz) wrote :

Remove myself from all these CCs now that we have the warty-bugs mailing list

Revision history for this message
Matt Zimmerman (mdz) wrote :

This bug can be closed when we import 2.4.27 from Debian

Revision history for this message
Matt Zimmerman (mdz) wrote :

Increase severity of RC bugs to major, now that we have other, non-RC bugs in
the list

Revision history for this message
Matt Zimmerman (mdz) wrote :

sync of 2.4.26-3 requested to fix this bug and other security issues

Revision history for this message
In , Javier Fernández-Sanguino (jfs) wrote : Retitle bug

retitle 253871 CAN-2004-0554 user application can hang the kernel
thanks

Peter did not sent the retitle to control@

Revision history for this message
Debian Bug Importer (debzilla) wrote :

Message-ID: <email address hidden>
Date: Tue, 20 Jul 2004 12:09:02 +0200
From: Javier =?iso-8859-1?Q?Fern=E1ndez-Sanguino_Pe=F1a?= <email address hidden>
To: <email address hidden>
Subject: Retitle bug

--RnlQjJ0d97Da+TV1
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

retitle 253871 CAN-2004-0554 user application can hang the kernel
thanks

Peter did not sent the retitle to control@

--RnlQjJ0d97Da+TV1
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFA/O89i4sehJTrj0oRAnrRAJ9cBkdtS2tehcfH7X9Sbhbqic0KTQCfV//O
OXNNIKcbPXSQMFXPj3kW8/Q=
=5X49
-----END PGP SIGNATURE-----

--RnlQjJ0d97Da+TV1--

Revision history for this message
Matt Zimmerman (mdz) wrote :

sync complete

kernel-source-2.4.26 | 2.4.26-3 | http://auckland.warthogs.hbd.com warty/main
Sources

Revision history for this message
In , Francesco Paolo Lovergine (frankie) wrote : already done in 2.4.26-3

See past changelog, CAN-2004-0554 has been solved.

--
Francesco P. Lovergine

Revision history for this message
Debian Bug Importer (debzilla) wrote :

Message-ID: <email address hidden>
Date: Sun, 25 Jul 2004 11:37:05 +0200
From: Francesco Paolo Lovergine <email address hidden>
To: <email address hidden>
Subject: already done in 2.4.26-3

See past changelog, CAN-2004-0554 has been solved.

--
Francesco P. Lovergine

Revision history for this message
In , Norbert Tretkowski (tretkowski) wrote : Re: CAN-2004-0554 user application can hang the kernel

reopen 253871
thanks

Because of #262540, this bug is still valid for current kernel images.

Norbert

Revision history for this message
Debian Bug Importer (debzilla) wrote :

Message-ID: <email address hidden>
Date: Tue, 3 Aug 2004 16:05:47 +0200
From: Norbert Tretkowski <email address hidden>
To: <email address hidden>
Cc: <email address hidden>
Subject: Re: CAN-2004-0554 user application can hang the kernel

reopen 253871
thanks

Because of #262540, this bug is still valid for current kernel images.

Norbert

Revision history for this message
Matt Zimmerman (mdz) wrote :

reopened in Debian, where we synched the fix from. Will sync the fix from them

Revision history for this message
Matt Zimmerman (mdz) wrote :

kernel-image-2.4.26-i386 just needs to be rebuilt with the current kernel-source
in Warty

Revision history for this message
In , Simon Horman (horms) wrote : Bug#253871: fixed in kernel-image-2.4.26-i386 2.4.26-6
Download full text (11.1 KiB)

Source: kernel-image-2.4.26-i386
Source-Version: 2.4.26-6

We believe that the bug you reported is fixed in the latest version of
kernel-image-2.4.26-i386, which is due to be installed in the Debian FTP archive:

kernel-build-2.4.26-1_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-build-2.4.26-1_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-386_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-386_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-586tsc_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-586tsc_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-686-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-686-smp_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-686_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-686_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-k6_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-k6_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-k7-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-k7-smp_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-k7_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-k7_2.4.26-6_i386.deb
kernel-headers-2.4.26-1_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1_2.4.26-6_i386.deb
kernel-image-2.4.26-1-386_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-386_2.4.26-6_i386.deb
kernel-image-2.4.26-1-586tsc_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-586tsc_2.4.26-6_i386.deb
kernel-image-2.4.26-1-686-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-686-smp_2.4.26-6_i386.deb
kernel-image-2.4.26-1-686_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-686_2.4.26-6_i386.deb
kernel-image-2.4.26-1-k6_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-k6_2.4.26-6_i386.deb
kernel-image-2.4.26-1-k7-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-k7-smp_2.4.26-6_i386.deb
kernel-image-2.4.26-1-k7_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-k7_2.4.26-6_i386.deb
kernel-image-2.4.26-i386_2.4.26-6.dsc
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-i386_2.4.26-6.dsc
kernel-image-2.4.26-i386_2.4.26-6.tar.gz
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-i386_2.4.26-6.tar.gz
kernel-pcmcia-modules-2.4.26-1-386_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-pcmcia-modules-2.4.26-1-386_2.4.26-6_i386.deb
kernel-pcmcia-modules-2.4.26-1-586tsc_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-pcmcia-modules-2.4.26-1-586tsc_2.4.26-6_i386.deb
kernel-pcmcia-modules-2.4.26-1-686-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-pcmcia-modules-2.4.26-1-686-smp_2.4.26-6_i386.deb
kernel-pcmcia-modules-2.4.26-1-686_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-pcmcia-modules-2.4.26-1-686_2.4.26-6_i386.deb
kernel-pcmc...

Revision history for this message
Debian Bug Importer (debzilla) wrote :
Download full text (11.3 KiB)

Message-Id: <email address hidden>
Date: Tue, 24 Aug 2004 02:02:20 -0400
From: Simon Horman <email address hidden>
To: <email address hidden>
Subject: Bug#253871: fixed in kernel-image-2.4.26-i386 2.4.26-6

Source: kernel-image-2.4.26-i386
Source-Version: 2.4.26-6

We believe that the bug you reported is fixed in the latest version of
kernel-image-2.4.26-i386, which is due to be installed in the Debian FTP archive:

kernel-build-2.4.26-1_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-build-2.4.26-1_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-386_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-386_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-586tsc_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-586tsc_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-686-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-686-smp_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-686_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-686_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-k6_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-k6_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-k7-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-k7-smp_2.4.26-6_i386.deb
kernel-headers-2.4.26-1-k7_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1-k7_2.4.26-6_i386.deb
kernel-headers-2.4.26-1_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-headers-2.4.26-1_2.4.26-6_i386.deb
kernel-image-2.4.26-1-386_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-386_2.4.26-6_i386.deb
kernel-image-2.4.26-1-586tsc_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-586tsc_2.4.26-6_i386.deb
kernel-image-2.4.26-1-686-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-686-smp_2.4.26-6_i386.deb
kernel-image-2.4.26-1-686_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-686_2.4.26-6_i386.deb
kernel-image-2.4.26-1-k6_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-k6_2.4.26-6_i386.deb
kernel-image-2.4.26-1-k7-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-k7-smp_2.4.26-6_i386.deb
kernel-image-2.4.26-1-k7_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-1-k7_2.4.26-6_i386.deb
kernel-image-2.4.26-i386_2.4.26-6.dsc
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-i386_2.4.26-6.dsc
kernel-image-2.4.26-i386_2.4.26-6.tar.gz
  to pool/main/k/kernel-image-2.4.26-i386/kernel-image-2.4.26-i386_2.4.26-6.tar.gz
kernel-pcmcia-modules-2.4.26-1-386_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-pcmcia-modules-2.4.26-1-386_2.4.26-6_i386.deb
kernel-pcmcia-modules-2.4.26-1-586tsc_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4.26-i386/kernel-pcmcia-modules-2.4.26-1-586tsc_2.4.26-6_i386.deb
kernel-pcmcia-modules-2.4.26-1-686-smp_2.4.26-6_i386.deb
  to pool/main/k/kernel-image-2.4...

Revision history for this message
Matt Zimmerman (mdz) wrote :

sync complete

Changed in linux-source-2.6.15:
status: Unknown → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.