Slackware 9.1 / current : Kernel security update (SSA:2003-336-01)

This script is Copyright (C) 2005-2013 Tenable Network Security, Inc.


Synopsis :

The remote Slackware host is missing a security update.

Description :

New kernels are available for Slackware 9.1 and -current. These have
been upgraded to Linux kernel version 2.4.23, which fixes a bug in the
kernel's do_brk() function that could be exploited to gain root
privileges. These updated kernels and modules should be installed by
any sites running a 2.4 kernel earlier than 2.4.23. Linux 2.0 and 2.2
kernels are not vulnerable.

See also :

http://www.nessus.org/u?aa018f51
http://www.nessus.org/u?0ba653f4

Solution :

Update the affected packages.

Risk factor :

High / CVSS Base Score : 7.2
(CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C)

Family: Slackware Local Security Checks

Nessus Plugin ID: 18743 ()

Bugtraq ID:

CVE ID: CVE-2003-0961