Activity log for bug #804366

Date Who What changed Old value New value Message
2011-07-01 15:13:26 Paolo Pisati bug added bug
2011-07-01 15:14:25 Paolo Pisati visibility private public
2011-07-01 15:14:35 Paolo Pisati tags kernel-cve-tracker
2011-07-01 21:39:00 Hans Joachim Desserud cve linked 2011-1019
2011-07-04 10:07:24 Paolo Pisati nominated for series Ubuntu Maverick
2011-08-10 19:49:26 Kees Cook bug task added linux-ti-omap4 (Ubuntu Maverick)
2011-08-10 19:53:24 Kees Cook linux-ec2 (Ubuntu Maverick): status New Invalid
2011-08-10 19:53:26 Kees Cook linux-lts-backport-natty (Ubuntu Maverick): status New Invalid
2011-08-10 19:53:28 Kees Cook linux-mvl-dove (Ubuntu Maverick): status New Fix Released
2011-08-10 19:53:29 Kees Cook linux-lts-backport-maverick (Ubuntu Maverick): status New Invalid
2011-08-10 19:53:32 Kees Cook linux (Ubuntu Maverick): status New Fix Released
2011-08-10 19:53:34 Kees Cook linux-ti-omap4 (Ubuntu Maverick): status New Fix Committed
2011-08-10 19:53:36 Kees Cook linux-fsl-imx51 (Ubuntu Maverick): status New Invalid
2011-08-10 19:53:38 Kees Cook description Since a8f80e8ff94ecba629542d9b4b5f5a8ee3eb565c any process with CAP_NET_ADMIN may load any module from /lib/modules/. This doesn't mean that CAP_NET_ADMIN is a superset of CAP_SYS_MODULE as modules are limited to /lib/modules/**. However, CAP_NET_ADMIN capability shouldn't allow anybody load any module not related to networking. This patch restricts an ability of autoloading modules to netdev modules with explicit aliases. This fixes CVE-2011-1019. Arnd Bergmann suggested to leave untouched the old pre-v2.6.32 behavior of loading netdev modules by name (without any prefix) for processes with CAP_SYS_MODULE to maintain the compatibility with network scripts that use autoloading netdev modules by aliases like "eth0", "wlan0". Currently there are only three users of the feature in the upstream kernel: ipip, ip_gre and sit. root@albatros:~# capsh --drop=$(seq -s, 0 11),$(seq -s, 13 34) -- root@albatros:~# grep Cap /proc/$$/status CapInh: 0000000000000000 CapPrm: fffffff800001000 CapEff: fffffff800001000 CapBnd: fffffff800001000 root@albatros:~# modprobe xfs FATAL: Error inserting xfs (/lib/modules/2.6.38-rc6-00001-g2bf4ca3/kernel/fs/xfs/xfs.ko): Operation not permitted root@albatros:~# lsmod | grep xfs root@albatros:~# ifconfig xfs xfs: error fetching interface information: Device not found root@albatros:~# lsmod | grep xfs root@albatros:~# lsmod | grep sit root@albatros:~# ifconfig sit sit: error fetching interface information: Device not found root@albatros:~# lsmod | grep sit root@albatros:~# ifconfig sit0 sit0 Link encap:IPv6-in-IPv4 NOARP MTU:1480 Metric:1 root@albatros:~# lsmod | grep sit sit 10457 0 tunnel4 2957 1 sit For CAP_SYS_MODULE module loading is still relaxed: root@albatros:~# grep Cap /proc/$$/status CapInh: 0000000000000000 CapPrm: ffffffffffffffff CapEff: ffffffffffffffff CapBnd: ffffffffffffffff root@albatros:~# ifconfig xfs xfs: error fetching interface information: Device not found root@albatros:~# lsmod | grep xfs xfs 745319 0 Reference: https://lkml.org/lkml/2011/2/24/203 [PG: in 2.6.34, the bare MODULE_ALIAS for ipip/tunl0 and ip_gre/gre0 didn't exist, but this adds the limited scope MODULE_ALIAS_NETDEV ones] Description needed Break-Fix: - 8909c9ad8ff03611c9c96c9a92656213e4bb495b
2011-08-10 19:55:28 Kees Cook nominated for series Ubuntu Hardy
2011-08-10 19:55:30 Kees Cook bug task added linux (Ubuntu Hardy)
2011-08-10 19:55:30 Kees Cook bug task added linux-ec2 (Ubuntu Hardy)
2011-08-10 19:55:30 Kees Cook bug task added linux-fsl-imx51 (Ubuntu Hardy)
2011-08-10 19:55:30 Kees Cook bug task added linux-linaro (Ubuntu Hardy)
2011-08-10 19:55:30 Kees Cook bug task added linux-lts-backport-maverick (Ubuntu Hardy)
2011-08-10 19:55:30 Kees Cook bug task added linux-lts-backport-natty (Ubuntu Hardy)
2011-08-10 19:55:30 Kees Cook bug task added linux-mvl-dove (Ubuntu Hardy)
2011-08-10 19:55:30 Kees Cook bug task added linux-qcm-msm (Ubuntu Hardy)
2011-08-10 19:55:30 Kees Cook bug task added linux-ti-omap4 (Ubuntu Hardy)
2011-08-10 19:55:39 Kees Cook nominated for series Ubuntu Lucid
2011-08-10 19:55:51 Kees Cook bug task added linux (Ubuntu Lucid)
2011-08-10 19:55:51 Kees Cook bug task added linux-ec2 (Ubuntu Lucid)
2011-08-10 19:55:51 Kees Cook bug task added linux-fsl-imx51 (Ubuntu Lucid)
2011-08-10 19:55:51 Kees Cook bug task added linux-linaro (Ubuntu Lucid)
2011-08-10 19:55:51 Kees Cook bug task added linux-lts-backport-maverick (Ubuntu Lucid)
2011-08-10 19:55:51 Kees Cook bug task added linux-lts-backport-natty (Ubuntu Lucid)
2011-08-10 19:55:51 Kees Cook bug task added linux-mvl-dove (Ubuntu Lucid)
2011-08-10 19:55:51 Kees Cook bug task added linux-qcm-msm (Ubuntu Lucid)
2011-08-10 19:55:51 Kees Cook bug task added linux-ti-omap4 (Ubuntu Lucid)
2011-08-10 19:55:59 Kees Cook nominated for series Ubuntu Natty
2011-08-10 19:57:33 Kees Cook bug task added linux (Ubuntu Natty)
2011-08-10 19:57:33 Kees Cook bug task added linux-ec2 (Ubuntu Natty)
2011-08-10 19:57:33 Kees Cook bug task added linux-fsl-imx51 (Ubuntu Natty)
2011-08-10 19:57:33 Kees Cook bug task added linux-linaro (Ubuntu Natty)
2011-08-10 19:57:33 Kees Cook bug task added linux-lts-backport-maverick (Ubuntu Natty)
2011-08-10 19:57:33 Kees Cook bug task added linux-lts-backport-natty (Ubuntu Natty)
2011-08-10 19:57:33 Kees Cook bug task added linux-mvl-dove (Ubuntu Natty)
2011-08-10 19:57:33 Kees Cook bug task added linux-qcm-msm (Ubuntu Natty)
2011-08-10 19:57:33 Kees Cook bug task added linux-ti-omap4 (Ubuntu Natty)
2011-08-10 19:57:42 Kees Cook nominated for series Ubuntu Oneiric
2011-08-10 20:11:06 Kees Cook bug task added linux (Ubuntu Oneiric)
2011-08-10 20:11:06 Kees Cook bug task added linux-ec2 (Ubuntu Oneiric)
2011-08-10 20:11:06 Kees Cook bug task added linux-fsl-imx51 (Ubuntu Oneiric)
2011-08-10 20:11:06 Kees Cook bug task added linux-linaro (Ubuntu Oneiric)
2011-08-10 20:11:06 Kees Cook bug task added linux-lts-backport-maverick (Ubuntu Oneiric)
2011-08-10 20:11:06 Kees Cook bug task added linux-lts-backport-natty (Ubuntu Oneiric)
2011-08-10 20:11:06 Kees Cook bug task added linux-mvl-dove (Ubuntu Oneiric)
2011-08-10 20:11:06 Kees Cook bug task added linux-qcm-msm (Ubuntu Oneiric)
2011-08-10 20:11:06 Kees Cook bug task added linux-ti-omap4 (Ubuntu Oneiric)
2011-08-10 20:11:16 Kees Cook linux-ec2 (Ubuntu Lucid): status New Fix Released
2011-08-10 20:11:18 Kees Cook linux-ec2 (Ubuntu Oneiric): status New Invalid
2011-08-10 20:11:21 Kees Cook linux-ec2 (Ubuntu Hardy): status New Invalid
2011-08-10 20:11:24 Kees Cook linux-ec2 (Ubuntu Natty): status New Invalid
2011-08-10 20:11:27 Kees Cook linux-lts-backport-natty (Ubuntu Lucid): status New Invalid
2011-08-10 20:11:29 Kees Cook linux-lts-backport-natty (Ubuntu Oneiric): status New Invalid
2011-08-10 20:11:32 Kees Cook linux-lts-backport-natty (Ubuntu Hardy): status New Invalid
2011-08-10 20:11:35 Kees Cook linux-lts-backport-natty (Ubuntu Natty): status New Invalid
2011-08-10 20:11:38 Kees Cook linux-mvl-dove (Ubuntu Lucid): status New Fix Released
2011-08-10 20:11:41 Kees Cook linux-mvl-dove (Ubuntu Oneiric): status New Invalid
2011-08-10 20:11:44 Kees Cook linux-mvl-dove (Ubuntu Hardy): status New Invalid
2011-08-10 20:11:46 Kees Cook linux-mvl-dove (Ubuntu Natty): status New Invalid
2011-08-10 20:11:48 Kees Cook linux-lts-backport-maverick (Ubuntu Lucid): status New Fix Released
2011-08-10 20:11:52 Kees Cook linux-lts-backport-maverick (Ubuntu Oneiric): status New Invalid
2011-08-10 20:11:54 Kees Cook linux-lts-backport-maverick (Ubuntu Hardy): status New Invalid
2011-08-10 20:11:56 Kees Cook linux-lts-backport-maverick (Ubuntu Natty): status New Invalid
2011-08-10 20:11:59 Kees Cook linux (Ubuntu Lucid): status New Fix Released
2011-08-10 20:12:03 Kees Cook linux (Ubuntu Oneiric): status New Invalid
2011-08-10 20:12:05 Kees Cook linux (Ubuntu Hardy): status New Invalid
2011-08-10 20:12:08 Kees Cook linux (Ubuntu Natty): status New Fix Released
2011-08-10 20:12:11 Kees Cook linux-ti-omap4 (Ubuntu Lucid): status New Invalid
2011-08-10 20:12:13 Kees Cook linux-ti-omap4 (Ubuntu Oneiric): status New Invalid
2011-08-10 20:12:16 Kees Cook linux-ti-omap4 (Ubuntu Hardy): status New Invalid
2011-08-10 20:12:18 Kees Cook linux-ti-omap4 (Ubuntu Natty): status New Fix Committed
2011-08-10 20:12:21 Kees Cook linux-fsl-imx51 (Ubuntu Lucid): status New Invalid
2011-08-10 20:12:24 Kees Cook linux-fsl-imx51 (Ubuntu Oneiric): status New Invalid
2011-08-10 20:12:27 Kees Cook linux-fsl-imx51 (Ubuntu Hardy): status New Invalid
2011-08-10 20:12:29 Kees Cook linux-fsl-imx51 (Ubuntu Natty): status New Invalid
2011-08-10 20:12:32 Kees Cook description Description needed Break-Fix: - 8909c9ad8ff03611c9c96c9a92656213e4bb495b Vasiliy Kulikov discovered that the CAP_SYS_MODULE capability was not needed to load kernel modules. A local attacker with the CAP_NET_ADMIN capability could load existing kernel modules, possibly increasing the attack surface available on the system. Break-Fix: a8f80e8ff94ecba629542d9b4b5f5a8ee3eb565c 8909c9ad8ff03611c9c96c9a92656213e4bb495b
2011-08-16 17:28:59 Kees Cook linux-ec2 (Ubuntu Lucid): importance Undecided Medium
2011-08-16 17:29:03 Kees Cook linux-ec2 (Ubuntu Oneiric): importance Undecided Medium
2011-08-16 17:29:07 Kees Cook linux-ec2 (Ubuntu Hardy): importance Undecided Medium
2011-08-16 17:29:09 Kees Cook linux-ec2 (Ubuntu Maverick): importance Undecided Medium
2011-08-16 17:29:12 Kees Cook linux-ec2 (Ubuntu Natty): importance Undecided Medium
2011-08-16 17:29:14 Kees Cook linux-lts-backport-natty (Ubuntu Lucid): importance Undecided Medium
2011-08-16 17:29:17 Kees Cook linux-lts-backport-natty (Ubuntu Oneiric): importance Undecided Medium
2011-08-16 17:29:20 Kees Cook linux-lts-backport-natty (Ubuntu Hardy): importance Undecided Medium
2011-08-16 17:29:22 Kees Cook linux-lts-backport-natty (Ubuntu Maverick): importance Undecided Medium
2011-08-16 17:29:24 Kees Cook linux-lts-backport-natty (Ubuntu Natty): importance Undecided Medium
2011-08-16 17:29:26 Kees Cook linux-mvl-dove (Ubuntu Lucid): importance Undecided Medium
2011-08-16 17:29:29 Kees Cook linux-mvl-dove (Ubuntu Oneiric): importance Undecided Medium
2011-08-16 17:29:32 Kees Cook linux-mvl-dove (Ubuntu Hardy): importance Undecided Medium
2011-08-16 17:29:34 Kees Cook linux-mvl-dove (Ubuntu Maverick): importance Undecided Medium
2011-08-16 17:29:36 Kees Cook linux-mvl-dove (Ubuntu Natty): importance Undecided Medium
2011-08-16 17:29:38 Kees Cook linux-lts-backport-maverick (Ubuntu Lucid): importance Undecided Medium
2011-08-16 17:29:41 Kees Cook linux-lts-backport-maverick (Ubuntu Oneiric): importance Undecided Medium
2011-08-16 17:29:44 Kees Cook linux-lts-backport-maverick (Ubuntu Hardy): importance Undecided Medium
2011-08-16 17:29:47 Kees Cook linux-lts-backport-maverick (Ubuntu Maverick): importance Undecided Medium
2011-08-16 17:29:50 Kees Cook linux-lts-backport-maverick (Ubuntu Natty): importance Undecided Medium
2011-08-16 17:29:52 Kees Cook linux (Ubuntu Lucid): importance Undecided Medium
2011-08-16 17:29:55 Kees Cook linux (Ubuntu Oneiric): importance Undecided Medium
2011-08-16 17:29:57 Kees Cook linux (Ubuntu Hardy): importance Undecided Medium
2011-08-16 17:30:00 Kees Cook linux (Ubuntu Maverick): importance Undecided Medium
2011-08-16 17:30:02 Kees Cook linux (Ubuntu Natty): importance Undecided Medium
2011-08-16 17:30:05 Kees Cook linux-ti-omap4 (Ubuntu Lucid): importance Undecided Medium
2011-08-16 17:30:07 Kees Cook linux-ti-omap4 (Ubuntu Oneiric): importance Undecided Medium
2011-08-16 17:30:11 Kees Cook linux-ti-omap4 (Ubuntu Hardy): importance Undecided Medium
2011-08-16 17:30:14 Kees Cook linux-ti-omap4 (Ubuntu Maverick): importance Undecided Medium
2011-08-16 17:30:16 Kees Cook linux-ti-omap4 (Ubuntu Natty): importance Undecided Medium
2011-08-16 17:30:19 Kees Cook linux-fsl-imx51 (Ubuntu Lucid): importance Undecided Medium
2011-08-16 17:30:21 Kees Cook linux-fsl-imx51 (Ubuntu Oneiric): importance Undecided Medium
2011-08-16 17:30:24 Kees Cook linux-fsl-imx51 (Ubuntu Hardy): importance Undecided Medium
2011-08-16 17:30:29 Kees Cook linux-fsl-imx51 (Ubuntu Maverick): importance Undecided Medium
2011-08-16 17:30:31 Kees Cook linux-fsl-imx51 (Ubuntu Natty): importance Undecided Medium
2011-08-24 10:23:48 Launchpad Janitor branch linked lp:ubuntu/maverick-proposed/linux-ti-omap4
2011-09-13 10:42:07 Launchpad Janitor linux-ti-omap4 (Ubuntu Maverick): status Fix Committed Fix Released
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3296
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3297
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3858
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3859
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3880
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4073
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4076
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4077
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4080
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4081
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4082
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4083
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4157
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4162
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4163
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4169
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4175
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4242
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4243
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4248
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4256
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4565
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4649
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-0463
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-0695
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-0711
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-0726
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1010
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1012
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1013
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1016
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1017
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1020
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1078
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1079
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1080
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1082
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1090
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1093
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1160
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1163
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1169
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1170
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1171
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1172
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1173
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1180
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1478
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1493
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1494
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1577
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1598
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1748
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1770
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1833
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2484
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2492
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2534
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2699
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2918
2012-05-02 11:47:28 Jamie Strandboge linux-linaro (Ubuntu Lucid): status New Won't Fix
2012-05-02 11:47:31 Jamie Strandboge linux-linaro (Ubuntu Maverick): status New Won't Fix
2012-05-02 11:47:34 Jamie Strandboge linux-linaro (Ubuntu Natty): status New Won't Fix
2012-05-02 11:47:37 Jamie Strandboge linux-linaro (Ubuntu Oneiric): status New Won't Fix
2012-05-02 11:47:41 Jamie Strandboge linux-linaro (Ubuntu Hardy): status New Won't Fix
2012-05-02 11:50:22 Jamie Strandboge linux-linaro (Ubuntu): status New Won't Fix
2013-01-31 18:01:41 Marc Deslauriers linux-linaro (Ubuntu): status Won't Fix Invalid
2013-01-31 18:01:47 Marc Deslauriers linux-qcm-msm (Ubuntu): status New Invalid
2013-01-31 18:01:50 Marc Deslauriers linux (Ubuntu Lucid): status Fix Released Invalid
2013-01-31 18:01:54 Marc Deslauriers linux-ec2 (Ubuntu Lucid): status Fix Released Invalid
2013-01-31 18:01:57 Marc Deslauriers linux-linaro (Ubuntu Lucid): status Won't Fix Invalid
2013-01-31 18:02:00 Marc Deslauriers linux-lts-backport-maverick (Ubuntu Lucid): status Fix Released Invalid
2013-01-31 18:02:05 Marc Deslauriers linux-mvl-dove (Ubuntu Lucid): status Fix Released Invalid
2013-01-31 18:02:08 Marc Deslauriers linux-qcm-msm (Ubuntu Lucid): status New Invalid
2013-01-31 18:02:13 Marc Deslauriers linux (Ubuntu Maverick): status Fix Released Invalid
2013-01-31 18:02:18 Marc Deslauriers linux-linaro (Ubuntu Maverick): status Won't Fix Invalid
2013-01-31 18:02:22 Marc Deslauriers linux-mvl-dove (Ubuntu Maverick): status Fix Released Invalid
2013-01-31 18:02:25 Marc Deslauriers linux-qcm-msm (Ubuntu Maverick): status New Invalid
2013-01-31 18:02:28 Marc Deslauriers linux-ti-omap4 (Ubuntu Maverick): status Fix Released Invalid
2013-01-31 18:02:31 Marc Deslauriers linux (Ubuntu Natty): status Fix Released Invalid
2013-01-31 18:02:35 Marc Deslauriers linux-linaro (Ubuntu Natty): status Won't Fix Invalid
2013-01-31 18:02:40 Marc Deslauriers linux-qcm-msm (Ubuntu Natty): status New Invalid
2013-01-31 18:02:44 Marc Deslauriers linux-ti-omap4 (Ubuntu Natty): status Fix Committed Invalid
2013-01-31 18:03:46 Marc Deslauriers linux-linaro (Ubuntu Oneiric): status Won't Fix Invalid
2013-01-31 18:03:50 Marc Deslauriers linux-qcm-msm (Ubuntu Oneiric): status New Invalid
2013-01-31 18:03:57 Marc Deslauriers linux-linaro (Ubuntu Hardy): status Won't Fix Invalid
2013-01-31 18:04:05 Marc Deslauriers linux-qcm-msm (Ubuntu Hardy): status New Invalid