Fedora 9 : kernel- (2009-0816)

Critical Nessus Plugin ID 35464


The remote Fedora host is missing a security update.


Update to kernel
http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog- http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog- http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog- Includes security fixes: CVE-2009-0029 Linux Kernel insecure 64 bit system call argument passing CVE-2009-0065 kernel: sctp: memory overflow when FWD-TSN chunk is received with bad stream ID Also fixes bug 478299, reported against Fedora 10: AVC denials on kernel Reverts ALSA driver to the version that is upstream in kernel 2.6.27. This should fix lack of audio on headphone outputs for some notebooks.

Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.


Update the affected kernel package.

See Also







Plugin Details

Severity: Critical

ID: 35464

File Name: fedora_2009-0816.nasl

Version: 1.18

Type: local

Agent: unix

Published: 2009/01/27

Updated: 2019/08/02

Dependencies: 12634

Risk Information

Risk Factor: Critical

CVSS v2.0

Base Score: 10

Temporal Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:POC/RL:OF/RC:C

Vulnerability Information

CPE: p-cpe:/a:fedoraproject:fedora:kernel, cpe:/o:fedoraproject:fedora:9

Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2009/01/21

Reference Information

CVE: CVE-2009-0029, CVE-2009-0065

BID: 33113

FEDORA: 2009-0816

CWE: 20, 119