[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#302864: CAN-2005-0815: Multiple security problems in ISO9660 and Rockridge Code



Package: kernel-source-2.4.27
Severity: important
Tags: security patch

I'm sure you are already aware of this, but here it is nonetheless:

CAN-2005-0815 describes multiple problems in the ISO9660 and Rockridge-
Code that may lead to memory corruption and possibly code execution through
carefully crafted ISO images.

The relevant 2.4 patches from Bitkeeper are:
http://linux.bkbits.net:8080/linux-2.4/gnupatch@4244a417jb-ZTWgax2mcR2so3l3KaQ
http://linux.bkbits.net:8080/linux-2.4/gnupatch@4244a3d91w2q8hQzZefX9zsDlTlJtA
http://linux.bkbits.net:8080/linux-2.4/gnupatch@4244a3aeRsXj7r4AC7s1QgPvWpjtoA

Cheers,
        Moritz

-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.6.11
Locale: LANG=C, LC_CTYPE=de_DE.ISO-8859-15@euro (charmap=ISO-8859-15)



Reply to: