Bugtraq mailing list archives
Re: [aadams () securityfocus com: Linux Kernel <= 2.4.21 MXCSR Local DOS Exploitation]
From: Matt Zimmerman <mdz () debian org>
Date: Sun, 23 Nov 2003 21:55:00 -0500
On Thu, Nov 20, 2003 at 05:10:57PM -0700, David Ahmad wrote:
As far as I know, this bug was not discussed or exploited anywhere publicly. Also, the technique used to cause the memory copy to fail is clever and may be useful in other scenarios.
Perhaps not exploited, but it was definitely discussed. http://cve.mitre.org/cgi-bin/cvename.cgi?name=2003-0248 http://www.debian.org/security/2003/dsa-311 http://www.debian.org/security/2003/dsa-332 http://www.redhat.com/support/errata/RHSA-2003-187.html http://www.redhat.com/support/errata/RHSA-2003-195.html http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2003:066 http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2003:074 -- - mdz
Current thread:
- [aadams () securityfocus com: Linux Kernel <= 2.4.21 MXCSR Local DOS Exploitation] David Ahmad (Nov 20)
- Re: [aadams () securityfocus com: Linux Kernel <= 2.4.21 MXCSR Local DOS Exploitation] Thilo Schulz (Nov 22)
- Re: [aadams () securityfocus com: Linux Kernel <= 2.4.21 MXCSR Local DOS Exploitation] Matt Zimmerman (Nov 24)
