Mandriva Linux Security Advisory : kernel (MDVSA-2008:223)

critical Nessus Plugin ID 37065

Synopsis

The remote Mandriva Linux host is missing one or more security updates.

Description

Some vulnerabilities were discovered and corrected in the Linux 2.6 kernel :

Buffer overflow in format descriptor parsing in the uvc_parse_format function in drivers/media/video/uvc/uvc_driver.c in uvcvideo in the video4linux (V4L) implementation in the Linux kernel before 2.6.26.1 has unknown impact and attack vectors. (CVE-2008-3496)

The sbni_ioctl function in drivers/net/wan/sbni.c in the wan subsystem in the Linux kernel 2.6.26.3 does not check for the CAP_NET_ADMIN capability before processing a (1) SIOCDEVRESINSTATS, (2) SIOCDEVSHWSTATE, (3) SIOCDEVENSLAVE, or (4) SIOCDEVEMANSIPATE ioctl request, which allows local users to bypass intended capability restrictions. (CVE-2008-3525)

Integer overflow in the sctp_setsockopt_auth_key function in net/sctp/socket.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel 2.6.24-rc1 through 2.6.26.3 allows remote attackers to cause a denial of service (panic) or possibly have unspecified other impact via a crafted sca_keylength field associated with the SCTP_AUTH_KEY option. (CVE-2008-3526)

The sctp_auth_ep_set_hmacs function in net/sctp/auth.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.26.4, when the SCTP-AUTH extension is enabled, does not verify that the identifier index is within the bounds established by SCTP_AUTH_HMAC_ID_MAX, which allows local users to obtain sensitive information via a crafted SCTP_HMAC_IDENT IOCTL request involving the sctp_getsockopt function, a different vulnerability than CVE-2008-4113. (CVE-2008-4445)

Additionaly, fixes for sound on NEC Versa S9100 and others were added, PATA and AHCI support for Intel ICH10 was added, a fix to allow better disk transfer speeds was made for Hercules EC-900 mini-notebook, a cyrus-imapd corruption issue in x86_64 arch was solved, RealTek 8169/8168/8101 support was improved, and a few other things. Check the package changelog for details.

To update your kernel, please follow the directions located at :

http://www.mandriva.com/en/security/kernelupdate

Solution

Update the affected packages.

See Also

https://qa.mandriva.com/35343

https://qa.mandriva.com/39048

Plugin Details

Severity: Critical

ID: 37065

File Name: mandriva_MDVSA-2008-223.nasl

Version: 1.14

Type: local

Published: 4/23/2009

Updated: 1/6/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Critical

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: p-cpe:/a:mandriva:linux:fcdslsl-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcdslsl-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcdslsl-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcdslsl-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fcdslsl-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcdslsl-kernel-server-latest, p-cpe:/a:mandriva:linux:fcdslslusb-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcdslslusb-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcdslslusb-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcdslslusb-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcdslslusb-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcdslslusb-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fcdslslusb-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcdslslusb-kernel-server-latest, p-cpe:/a:mandriva:linux:fcdslusb-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcdslusb-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcdslusb-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcdslusb-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcdslusb-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcdslusb-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:actuator-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:actuator-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:actuator-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:actuator-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:actuator-kernel-desktop-latest, p-cpe:/a:mandriva:linux:actuator-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:actuator-kernel-laptop-latest, p-cpe:/a:mandriva:linux:actuator-kernel-server-latest, p-cpe:/a:mandriva:linux:alsa_raoppcm-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:alsa_raoppcm-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:alsa_raoppcm-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:alsa_raoppcm-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:alsa_raoppcm-kernel-desktop-latest, p-cpe:/a:mandriva:linux:alsa_raoppcm-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:alsa_raoppcm-kernel-laptop-latest, p-cpe:/a:mandriva:linux:alsa_raoppcm-kernel-server-latest, p-cpe:/a:mandriva:linux:dkms-pcc-acpi-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:dkms-pcc-acpi-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:dkms-pcc-acpi-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:dkms-pcc-acpi-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:dkms-pcc-acpi-kernel-desktop-latest, p-cpe:/a:mandriva:linux:dkms-pcc-acpi-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:dkms-pcc-acpi-kernel-laptop-latest, p-cpe:/a:mandriva:linux:dkms-pcc-acpi-kernel-server-latest, p-cpe:/a:mandriva:linux:drm-experimental-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:drm-experimental-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:drm-experimental-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:drm-experimental-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:drm-experimental-kernel-desktop-latest, p-cpe:/a:mandriva:linux:drm-experimental-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:drm-experimental-kernel-laptop-latest, p-cpe:/a:mandriva:linux:drm-experimental-kernel-server-latest, p-cpe:/a:mandriva:linux:em8300-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:em8300-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:em8300-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:em8300-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:em8300-kernel-desktop-latest, p-cpe:/a:mandriva:linux:em8300-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:em8300-kernel-laptop-latest, p-cpe:/a:mandriva:linux:em8300-kernel-server-latest, p-cpe:/a:mandriva:linux:et131x-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:et131x-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:et131x-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:et131x-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:et131x-kernel-desktop-latest, p-cpe:/a:mandriva:linux:et131x-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:et131x-kernel-laptop-latest, p-cpe:/a:mandriva:linux:et131x-kernel-server-latest, p-cpe:/a:mandriva:linux:fcdsl-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcdsl-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcdsl-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcdsl-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcdsl-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcdsl-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fcdsl-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcdsl-kernel-server-latest, p-cpe:/a:mandriva:linux:fcdsl2-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcdsl2-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcdsl2-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcdsl2-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcdsl2-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcdsl2-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fcdsl2-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcdsl2-kernel-server-latest, p-cpe:/a:mandriva:linux:fcdslsl-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcdslsl-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcdslusba-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcdslusba-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcdslusba-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcdslusba-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcdslusba-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fcdslusba-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcdslusba-kernel-server-latest, p-cpe:/a:mandriva:linux:fcpci-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcpci-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcpci-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcpci-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcpci-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcpci-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fcpci-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcpci-kernel-server-latest, p-cpe:/a:mandriva:linux:fcusb-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcusb-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcusb-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcusb-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcusb-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcusb-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fcusb-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcusb-kernel-server-latest, p-cpe:/a:mandriva:linux:fcusb2-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcusb2-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcusb2-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcusb2-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcusb2-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcusb2-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fcusb2-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcusb2-kernel-server-latest, p-cpe:/a:mandriva:linux:fglrx-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fglrx-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fglrx-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fglrx-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fglrx-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fglrx-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fglrx-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fglrx-kernel-server-latest, p-cpe:/a:mandriva:linux:fxusb-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fxusb-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fxusb-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fxusb-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fxusb-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fxusb-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fxusb-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fxusb-kernel-server-latest, p-cpe:/a:mandriva:linux:fxusb_cz-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fxusb_cz-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fxusb_cz-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fxusb_cz-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fxusb_cz-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fxusb_cz-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fxusb_cz-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fxusb_cz-kernel-server-latest, p-cpe:/a:mandriva:linux:gspca-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:gspca-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:gspca-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:gspca-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:gspca-kernel-desktop-latest, p-cpe:/a:mandriva:linux:gspca-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:gspca-kernel-laptop-latest, p-cpe:/a:mandriva:linux:gspca-kernel-server-latest, p-cpe:/a:mandriva:linux:hsfmodem-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:hsfmodem-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:hsfmodem-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:hsfmodem-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:hsfmodem-kernel-desktop-latest, p-cpe:/a:mandriva:linux:hsfmodem-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:hsfmodem-kernel-laptop-latest, p-cpe:/a:mandriva:linux:hsfmodem-kernel-server-latest, p-cpe:/a:mandriva:linux:ipw3945-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:ipw3945-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:ipw3945-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:ipw3945-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:ipw3945-kernel-desktop-latest, p-cpe:/a:mandriva:linux:ipw3945-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:ipw3945-kernel-laptop-latest, p-cpe:/a:mandriva:linux:ipw3945-kernel-server-latest, p-cpe:/a:mandriva:linux:iwlwifi-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:iwlwifi-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:iwlwifi-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:iwlwifi-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:iwlwifi-kernel-desktop-latest, p-cpe:/a:mandriva:linux:iwlwifi-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:iwlwifi-kernel-laptop-latest, p-cpe:/a:mandriva:linux:iwlwifi-kernel-server-latest, p-cpe:/a:mandriva:linux:kernel-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-desktop-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-desktop-devel-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-desktop-devel-latest, p-cpe:/a:mandriva:linux:kernel-desktop-latest, p-cpe:/a:mandriva:linux:kernel-desktop586-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-desktop586-devel-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-desktop586-devel-latest, p-cpe:/a:mandriva:linux:kernel-desktop586-latest, p-cpe:/a:mandriva:linux:kernel-doc, p-cpe:/a:mandriva:linux:kernel-laptop-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-laptop-devel-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-laptop-devel-latest, p-cpe:/a:mandriva:linux:kernel-laptop-latest, p-cpe:/a:mandriva:linux:kernel-server-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-server-devel-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-server-devel-latest, p-cpe:/a:mandriva:linux:kernel-server-latest, p-cpe:/a:mandriva:linux:kernel-source-2.6.24.7-2mnb, p-cpe:/a:mandriva:linux:kernel-source-latest, p-cpe:/a:mandriva:linux:kqemu-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:kqemu-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:kqemu-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:kqemu-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:kqemu-kernel-desktop-latest, p-cpe:/a:mandriva:linux:kqemu-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:kqemu-kernel-laptop-latest, p-cpe:/a:mandriva:linux:kqemu-kernel-server-latest, p-cpe:/a:mandriva:linux:libafs-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:libafs-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:libafs-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:libafs-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:libafs-kernel-desktop-latest, p-cpe:/a:mandriva:linux:libafs-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:libafs-kernel-laptop-latest, p-cpe:/a:mandriva:linux:libafs-kernel-server-latest, p-cpe:/a:mandriva:linux:lirc-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:lirc-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:lirc-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:lirc-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:lirc-kernel-desktop-latest, p-cpe:/a:mandriva:linux:lirc-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:lirc-kernel-laptop-latest, p-cpe:/a:mandriva:linux:lirc-kernel-server-latest, p-cpe:/a:mandriva:linux:lzma-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcdslusb-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcdslusb-kernel-server-latest, p-cpe:/a:mandriva:linux:fcdslusb2-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:fcdslusb2-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:fcdslusb2-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:fcdslusb2-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:fcdslusb2-kernel-desktop-latest, p-cpe:/a:mandriva:linux:fcdslusb2-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:fcdslusb2-kernel-laptop-latest, p-cpe:/a:mandriva:linux:fcdslusb2-kernel-server-latest, p-cpe:/a:mandriva:linux:fcdslusba-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:nvidia-current-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:nvidia-current-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:nvidia-current-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:nvidia-current-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:nvidia-current-kernel-desktop-latest, p-cpe:/a:mandriva:linux:nvidia-current-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:nvidia-current-kernel-laptop-latest, p-cpe:/a:mandriva:linux:nvidia-current-kernel-server-latest, p-cpe:/a:mandriva:linux:nvidia71xx-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:nvidia71xx-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:nvidia71xx-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:nvidia71xx-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:nvidia71xx-kernel-desktop-latest, p-cpe:/a:mandriva:linux:nvidia71xx-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:nvidia71xx-kernel-laptop-latest, p-cpe:/a:mandriva:linux:nvidia71xx-kernel-server-latest, p-cpe:/a:mandriva:linux:nvidia96xx-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:nvidia96xx-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:nvidia96xx-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:nvidia96xx-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:nvidia96xx-kernel-desktop-latest, p-cpe:/a:mandriva:linux:nvidia96xx-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:nvidia96xx-kernel-laptop-latest, p-cpe:/a:mandriva:linux:nvidia96xx-kernel-server-latest, p-cpe:/a:mandriva:linux:omfs-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:omfs-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:omfs-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:omfs-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:omfs-kernel-desktop-latest, p-cpe:/a:mandriva:linux:omfs-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:omfs-kernel-laptop-latest, p-cpe:/a:mandriva:linux:omfs-kernel-server-latest, p-cpe:/a:mandriva:linux:opencbm-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:opencbm-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:opencbm-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:opencbm-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:opencbm-kernel-desktop-latest, p-cpe:/a:mandriva:linux:opencbm-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:opencbm-kernel-laptop-latest, p-cpe:/a:mandriva:linux:opencbm-kernel-server-latest, p-cpe:/a:mandriva:linux:ov51x-jpeg-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:ov51x-jpeg-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:ov51x-jpeg-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:ov51x-jpeg-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:ov51x-jpeg-kernel-desktop-latest, p-cpe:/a:mandriva:linux:ov51x-jpeg-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:ov51x-jpeg-kernel-laptop-latest, p-cpe:/a:mandriva:linux:ov51x-jpeg-kernel-server-latest, p-cpe:/a:mandriva:linux:qc-usb-messenger-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:qc-usb-messenger-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:qc-usb-messenger-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:qc-usb-messenger-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:qc-usb-messenger-kernel-desktop-latest, p-cpe:/a:mandriva:linux:qc-usb-messenger-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:qc-usb-messenger-kernel-laptop-latest, p-cpe:/a:mandriva:linux:qc-usb-messenger-kernel-server-latest, p-cpe:/a:mandriva:linux:r5u870-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:r5u870-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:r5u870-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:r5u870-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:r5u870-kernel-desktop-latest, p-cpe:/a:mandriva:linux:r5u870-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:r5u870-kernel-laptop-latest, p-cpe:/a:mandriva:linux:r5u870-kernel-server-latest, p-cpe:/a:mandriva:linux:realcrypt-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:realcrypt-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:realcrypt-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:realcrypt-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:realcrypt-kernel-desktop-latest, p-cpe:/a:mandriva:linux:realcrypt-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:realcrypt-kernel-laptop-latest, p-cpe:/a:mandriva:linux:realcrypt-kernel-server-latest, p-cpe:/a:mandriva:linux:slmodem-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:slmodem-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:slmodem-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:slmodem-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:slmodem-kernel-desktop-latest, p-cpe:/a:mandriva:linux:slmodem-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:slmodem-kernel-laptop-latest, p-cpe:/a:mandriva:linux:slmodem-kernel-server-latest, p-cpe:/a:mandriva:linux:squashfs-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:squashfs-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:squashfs-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:squashfs-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:squashfs-kernel-desktop-latest, p-cpe:/a:mandriva:linux:squashfs-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:squashfs-kernel-laptop-latest, p-cpe:/a:mandriva:linux:squashfs-kernel-server-latest, p-cpe:/a:mandriva:linux:squashfs-lzma-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:squashfs-lzma-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:squashfs-lzma-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:squashfs-lzma-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:squashfs-lzma-kernel-desktop-latest, p-cpe:/a:mandriva:linux:squashfs-lzma-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:squashfs-lzma-kernel-laptop-latest, p-cpe:/a:mandriva:linux:squashfs-lzma-kernel-server-latest, p-cpe:/a:mandriva:linux:syntek-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:syntek-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:syntek-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:syntek-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:syntek-kernel-desktop-latest, p-cpe:/a:mandriva:linux:syntek-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:syntek-kernel-laptop-latest, p-cpe:/a:mandriva:linux:syntek-kernel-server-latest, p-cpe:/a:mandriva:linux:tp_smapi-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:tp_smapi-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:tp_smapi-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:tp_smapi-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:tp_smapi-kernel-desktop-latest, p-cpe:/a:mandriva:linux:tp_smapi-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:tp_smapi-kernel-laptop-latest, p-cpe:/a:mandriva:linux:tp_smapi-kernel-server-latest, p-cpe:/a:mandriva:linux:unicorn-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:unicorn-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:unicorn-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:unicorn-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:unicorn-kernel-desktop-latest, p-cpe:/a:mandriva:linux:unicorn-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:unicorn-kernel-laptop-latest, p-cpe:/a:mandriva:linux:unicorn-kernel-server-latest, p-cpe:/a:mandriva:linux:unionfs-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:unionfs-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:unionfs-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:unionfs-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:unionfs-kernel-desktop-latest, p-cpe:/a:mandriva:linux:unionfs-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:unionfs-kernel-laptop-latest, p-cpe:/a:mandriva:linux:unionfs-kernel-server-latest, p-cpe:/a:mandriva:linux:vboxadd-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:vboxadd-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:vboxadd-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:vboxadd-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:vboxadd-kernel-desktop-latest, p-cpe:/a:mandriva:linux:vboxadd-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:vboxadd-kernel-laptop-latest, p-cpe:/a:mandriva:linux:vboxadd-kernel-server-latest, p-cpe:/a:mandriva:linux:vboxvfs-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:vboxvfs-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:vboxvfs-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:vboxvfs-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:vboxvfs-kernel-desktop-latest, p-cpe:/a:mandriva:linux:vboxvfs-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:vboxvfs-kernel-laptop-latest, p-cpe:/a:mandriva:linux:vboxvfs-kernel-server-latest, p-cpe:/a:mandriva:linux:virtualbox-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:virtualbox-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:virtualbox-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:virtualbox-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:virtualbox-kernel-desktop-latest, p-cpe:/a:mandriva:linux:virtualbox-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:virtualbox-kernel-laptop-latest, p-cpe:/a:mandriva:linux:virtualbox-kernel-server-latest, p-cpe:/a:mandriva:linux:vpnclient-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:vpnclient-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:vpnclient-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:vpnclient-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:vpnclient-kernel-desktop-latest, p-cpe:/a:mandriva:linux:vpnclient-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:vpnclient-kernel-laptop-latest, p-cpe:/a:mandriva:linux:vpnclient-kernel-server-latest, cpe:/o:mandriva:linux:2008.1, p-cpe:/a:mandriva:linux:lzma-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:lzma-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:lzma-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:lzma-kernel-desktop-latest, p-cpe:/a:mandriva:linux:lzma-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:lzma-kernel-laptop-latest, p-cpe:/a:mandriva:linux:lzma-kernel-server-latest, p-cpe:/a:mandriva:linux:m560x-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:m560x-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:m560x-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:m560x-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:m560x-kernel-desktop-latest, p-cpe:/a:mandriva:linux:m560x-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:m560x-kernel-laptop-latest, p-cpe:/a:mandriva:linux:m560x-kernel-server-latest, p-cpe:/a:mandriva:linux:madwifi-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:madwifi-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:madwifi-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:madwifi-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:madwifi-kernel-desktop-latest, p-cpe:/a:mandriva:linux:madwifi-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:madwifi-kernel-laptop-latest, p-cpe:/a:mandriva:linux:madwifi-kernel-server-latest, p-cpe:/a:mandriva:linux:ndiswrapper-kernel-2.6.24.7-desktop-2mnb, p-cpe:/a:mandriva:linux:ndiswrapper-kernel-2.6.24.7-desktop586-2mnb, p-cpe:/a:mandriva:linux:ndiswrapper-kernel-2.6.24.7-laptop-2mnb, p-cpe:/a:mandriva:linux:ndiswrapper-kernel-2.6.24.7-server-2mnb, p-cpe:/a:mandriva:linux:ndiswrapper-kernel-desktop-latest, p-cpe:/a:mandriva:linux:ndiswrapper-kernel-desktop586-latest, p-cpe:/a:mandriva:linux:ndiswrapper-kernel-laptop-latest, p-cpe:/a:mandriva:linux:ndiswrapper-kernel-server-latest

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/Mandrake/release, Host/Mandrake/rpm-list

Patch Publication Date: 10/31/2008

Reference Information

CVE: CVE-2008-3496, CVE-2008-3525, CVE-2008-3526, CVE-2008-4445

CWE: 119, 189, 200, 264

MDVSA: 2008:223