Package: kernel-source-2.6.8 Version: 2.6.8-14 Severity: important Tags: security
Quoting an advisory by ISS: Linux Kernel versions prior to 2.6.12-rc1 are vulnerable to unspecified vulnerabilities in the ISO9660 filesystem handler, including the Rock Ridge and Juliet extensions. A remote attacker could send a specially-crafted filesystem to cause a denial of service or execute arbitrary code on the system. It's been fixed as of 2.6.12-rc1, according to http://www.securityfocus.com/bid/12837 kernel 2.4 is affected as well. There's a test program at http://www.securityfocus.com/archive/1/393590. Cheers, Moritz -- System Information: Debian Release: 3.1 APT prefers unstable APT policy: (500, 'unstable') Architecture: i386 (i686) Kernel: Linux 2.6.11 Locale: LANG=C, [EMAIL PROTECTED] (charmap=ISO-8859-15) Versions of packages kernel-source-2.6.8 depends on: ii binutils 2.15-5 The GNU assembler, linker and bina ii bzip2 1.0.2-5 high-quality block-sorting file co ii coreutils [fileutils] 5.2.1-2 The GNU core utilities -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

