Description: | Description:
The remote host is missing an update to kernel announced via advisory FEDORA-2008-1422.
Update Information:
Update to Linux kernel 2.6.23.15: http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.23.15 Fix vmsplice local root vulnerability: CVE-2008-0009: Fixed by update to 2.6.23.15. CVE-2008-0010: Fixed by update to 2.6.23.15. CVE-2008-0600: Extra fix from upstream applied. Fix memory leak in netlabel code (#352281) Autoload the Dell dcdbas driver like in F8 (#326041) Work around broken Seagate LBA48 disks. (F8#429364) Fix futex oops on uniprocessor machine. (F8#429412) Add support for new Macbook touchpads. (F8#426574) Fix the initio driver broken in 2.6.23. (F8#390531) Fix segfaults from using vdso=2. (F8#427641) FireWire updates, fixing multiple problems. ACPI: fix multiple problems with brightness controls (F8#427518) Wireless driver updates from upstream.
ChangeLog:
References:
[ 1 ] Bug #352281 - Kernel memory leak with lots of threads? https://bugzilla.redhat.com/show_bug.cgi?id=352281 [ 2 ] Bug #326041 - Messages appear in /var/log/messages every few seconds kernel module not loaded https://bugzilla.redhat.com/show_bug.cgi?id=326041 [ 3 ] Bug #432283 - [SECURITY] CVE-2008-0600 local escalation of privilege https://bugzilla.redhat.com/show_bug.cgi?id=432283
Solution: Apply the appropriate updates.
This update can be installed with the yum update program. Use su -c 'yum update kernel' at the command line. For more information, refer to Managing Software with yum, available at http://docs.fedoraproject.org/yum/.
https://secure1.securityspace.com/smysecure/catid.html?in=FEDORA-2008-1422
Risk factor : High
CVSS Score: 7.2
|