| 1 |
Candidate: CVE-2004-1191
|
| 2 |
Description:
|
| 3 |
Race condition in SuSE Linux 8.1 through 9.2, when run on SMP systems that have more
|
| 4 |
than 4GB of memory, could allow local users to read unauthorized memory from
|
| 5 |
"foreign memory pages."
|
| 6 |
References:
|
| 7 |
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1191
|
| 8 |
http://www.novell.com/linux/security/advisories/2004_42_kernel.html
|
| 9 |
http://linux.bkbits.net:8080/linux-2.6/?PAGE=cset&REV=416e0015fxUJlgXuh_QC32U-2R9eKw
|
| 10 |
Notes:
|
| 11 |
- i've found the original bug report and bitkeeper patch (see above link)
|
| 12 |
- i have checked that the bitkeeper patch is indeed present in etch's 2.6.18
|
| 13 |
- as of 2.6.26, pgtable.h has been completely rewritten, so it is not affected
|
| 14 |
Bugs: 300163
|
| 15 |
upstream: released (sometime before 2.6.18)
|
| 16 |
linux-2.6: N/A "pgtable.h completely rewritten"
|
| 17 |
2.6.18-etch-security: N/A "fixed before 2.6.18"
|
| 18 |
2.6.24-etch-security: N/A "fixed before 2.6.18"
|
| 19 |
2.6.26-lenny-security: N/A "pgtable.h completely rewritten"
|