J-Security Center

Title: Red Hat Enterprise Linux Kernel Multiple Vulnerabilities

Severity: HIGH

Description:

Red Hat Enterprise Linux kernel is reported prone to multiple vulnerabilities. These issues may allow local attackers to carry out denial of service attacks and gain elevated privileges.

The following specific issues were identified:

The Red Hat Enterprise Linux kernel is reported prone to a local denial of service vulnerability. This issue affects Red Hat Enterprise Linux 4 kernel 4GB/4GB split patch. The cause of this issue is a missing access check regression.

Another issue affecting the Red Hat Enterprise Linux 4 kernel 4GB/4GB split patch can allow local attackers to read and write to arbitrary kernel memory. Reportedly, this vulnerability only affects computer running the hugemem kernel. A successful attack can allow an attacker to gain elevated privileges on a vulnerable computer.

The Red Hat Enterprise Linux 4 kernel 4GB/4GB split patch is reported prone to another denial of service vulnerability. This vulnerability also only affects computers running the hugemem kernel. A successful attack can allow an attacker to cause a denial of service condition.

These issues are reported to affect the Red Hat Enterprise Linux 4 kernel.

Due to lack of details, further information is not available at the moment. This BID will be updated when more information becomes available.

Affected Products:

  • RedHat Desktop 4.0.0
  • RedHat Enterprise Linux AS 4
  • RedHat Enterprise Linux ES 4
  • RedHat Enterprise Linux WS 4

References:

Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.