Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 212136 (CVE-2007-6694)

Summary: Linux PPC: CHRP - fix possible NULL pointer dereference (CVE-2007-6694)
Product: Gentoo Security Reporter: Robert Buchholz (RETIRED) <rbu>
Component: KernelAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: normal CC: kernel
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard: [linux < 2.6.24]
Package list:
Runtime testing required: ---

Description Robert Buchholz (RETIRED) gentoo-dev 2008-03-03 01:15:08 UTC
CVE-2007-6694 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6694):
  The chrp_show_cpuinfo function (chrp/setup.c) in Linux kernel 2.4.21 through
  2.6.18-53, when running on PowerPC, might allow local users to cause a denial
  of service (crash) via unknown vectors that cause the of_get_property
  function to fail, which triggers a NULL pointer dereference.
Comment 1 unnamedrambler 2008-03-21 18:59:00 UTC
[linux < 2.6.24] 7ac33417ecf8c012df0e957cfa0628a6a4347c7d