IA64: local DoS with corrupted ELFs This patch prevents cross-region mappings on IA64 and SPARC which could lead to system crash. davem@ confirmed: "This looks fine to me." :)
No patch is attached; not enough information is given about the vulnerability. Please reopen with additional information.
Umm, there is a patch. Look at the URL of this bug.
IA64 is fine, has 2.6.18 stabled. SPARC has gentoo-sources 2.6.17-r8 stabled which is fine, this is fixed usptream in 2.6.17.11. hardened-sources-2.6.17-r1 has genpatches r8 which also fixes this.
CVE-2006-4538: Linux kernel 2.6.17 and earlier, when running on IA64 or SPARC platforms, allows local users to cause a denial of service (crash) via a malformed ELF file that triggers memory maps that cross region boundaries.