Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 141503 - Kernel: DoS when using both NFS and EXT3 (CVE-2006-3468)
Summary: Kernel: DoS when using both NFS and EXT3 (CVE-2006-3468)
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Kernel (show other bugs)
Hardware: All Linux
: High normal
Assignee: Gentoo Security
URL: http://git.kernel.org/?p=linux/kernel...
Whiteboard: [linux <2.6.16.29] [linux >=2.6.17 <2...
Keywords:
Depends on:
Blocks:
 
Reported: 2006-07-23 09:02 UTC by Sune Kloppenborg Jeppesen (RETIRED)
Modified: 2009-07-11 11:22 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2006-07-23 09:02:11 UTC
Not sure when this is fixed. Filing this to be safe.

Linux kernel 2.6.x, when using both NFS and EXT3, allows remote attackers to cause a denial of service (file system panic) via a crafted UDP packet with a V2 lookup procedure that specifies a bad file handle (inode number), which triggers an error and causes an exported directory to be remounted read-only.
Comment 2 Harlan Lieberman-Berg (RETIRED) gentoo-dev 2006-09-02 19:41:07 UTC
Maintainers, please add two ext3 patches above, or bump to 2.6.17.11.

rsbac-sources-2.6:  kang
sh-sources-2.6: sh herd
usermode-sources-2.6:  dang
xbox-sources-2.6:  chrb, gimli
xen-sources-2.6: xen herd
Comment 3 Daniel Gryniewicz (RETIRED) gentoo-dev 2006-09-06 16:49:12 UTC
usermode-sources-2.6.16-r5 added.
Comment 4 Andrew Ross (RETIRED) gentoo-dev 2006-09-10 04:40:24 UTC
Patches added to xen-sources-2.6.16.28
Comment 5 Guillaume Destuynder (RETIRED) gentoo-dev 2006-11-09 06:42:52 UTC
rsbac-sources bumped to 2.6.18 in ~
Comment 6 Harlan Lieberman-Berg (RETIRED) gentoo-dev 2006-12-05 19:05:16 UTC
Xbox-sources and sh-sources are no longer covered by Gentoo Security. Closing.