You are here

T-669: Linux Kernel GFS2 Allocation Error Lets Local Users Deny Service

July 15, 2011 - 2:14am

Addthis

PROBLEM:

A vulnerability was reported in the Linux Kernel. A local user can cause denial of service conditions.

PLATFORM:

2.6.39 and prior versions

ABSTRACT:

Linux Kernel GFS2 Allocation Error Lets Local Users Deny Service.

referencesĀ  LINKS:

SecurityTracker Alert ID: 1025776
Linux Kernel Updates
CVE-2011-2689

IMPACT ASSESSMENT:

Medium

Discussion:

A local user can invoke the gfs2_fallocate() function in 'fs/gfs2/file.c' in certain cases to allocate a non-blksize aligned amount, resulting in an error in subsequent code that requires blksize aligned offsets.

Impact:

A local user can cause denial of service conditions on the target system.

Solution:

Linux has issued a source code fix.

Download Latest Kernel
Source Code Fix

Addthis