[SECURITY] Fedora Core 5 Test Update: kernel-2.6.17-1.2159_FC5

dragoran dragoran at feuerpokemon.de
Tue Jul 18 11:49:55 UTC 2006


Dave Jones wrote:
> ---------------------------------------------------------------------
> Fedora Test Update Notification
> FEDORA-2006-816
> 2006-07-17
> ---------------------------------------------------------------------
>
> Product     : Fedora Core 5
> Name        : kernel
> Version     : 2.6.17
> Release     : 1.2159_FC5
> Summary     : The Linux kernel (the core of the Linux operating system)
> Description :
> The kernel package contains the Linux kernel (vmlinuz), the core of any
> Linux operating system.  The kernel handles the basic functions
> of the operating system:  memory allocation, process allocation, device
> input and output, etc.
>
> ---------------------------------------------------------------------
> Update Information:
>
> Update to 2.6.17.6, which fixes a local root vulnerability
> in the /proc filesystem. This vulnerability isn't thought to
> be possible to exploit on Fedora systems with SELinux enabled.
> Additionally, the exploit for this vulnerability relies upon
> a.out support, which the Fedora kernel has disabled.
> Regardless, this update has been made available in case
> other attack vectors become apparent.
>   
because this vulnerability does not effect FC systems can you wait until 
2.6.17.7 is out, before pushing this to updates? there will be many 
patches (bugfixes) in it.




More information about the test mailing list