[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-02-05 Thread Sergio Tosti
Bug still present in 2.6.24-27
please include in upgrades.

-- 
Random segfaults with linux-image-2.6.24-26-xen
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-02-05 Thread Sergio Tosti
I believe that this is an important security bug.

Impact: address space randomization is unusable

Currently I'm testing kernel compiled with the attached patch that resolves the 
issue. 
Please evaluate it for an upgrade.

Sergio

-- 
Random segfaults with linux-image-2.6.24-26-xen
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-02-05 Thread Sergio Tosti

** Patch added: fix_random.patch
   http://launchpadlibrarian.net/38790389/fix_random.patch

-- 
Random segfaults with linux-image-2.6.24-26-xen
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-02-05 Thread Sergio Tosti
SRU Justification:

Impact: Kernel address space randomization is unusable on AMD64 platform
Fix: attached patch was adapted from 
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=80938332d8cf652f6b16e0788cf0ca136befe0b5

-- 
Random segfaults with linux-image-2.6.24-26-xen
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-02-05 Thread John Dong
I took a look at the patch but don't quite feel comfortable in giving an
ACK on a kernel patch like this. Can another SRU member / the security
team weigh in? Is this just SRU-worthy or should it be addressed as a
security bug, as the git commit log seems to imply this can lead to at
least a DoS?

-- 
Random segfaults with linux-image-2.6.24-26-xen
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-02-05 Thread Kees Cook
This patch looks fine to me, we should include it in all stable
releases, hardy and later.

** Also affects: linux (Ubuntu Intrepid)
   Importance: Undecided
   Status: New

** Also affects: linux (Ubuntu Jaunty)
   Importance: Undecided
   Status: New

-- 
Random segfaults on amd64 (Hardy through Jaunty)
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-02-05 Thread Kees Cook
Karmic and later have the patch.  I have reproduced this on non-xen, so
it appears to be a general issue.

** Tags removed: kernel-series-unknown xen

** Changed in: linux (Ubuntu Jaunty)
   Status: New = Confirmed

** Changed in: linux (Ubuntu Intrepid)
   Status: New = Confirmed

** Tags added: hardy intrepid jaunty

** Summary changed:

- Random segfaults with linux-image-2.6.24-26-xen
+ Random segfaults on amd64 (Hardy through Jaunty)

-- 
Random segfaults on amd64 (Hardy through Jaunty)
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-01-13 Thread Andy Whitcroft
** Tags added: kernel-series-unknown

-- 
Random segfaults with linux-image-2.6.24-26-xen
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-01-10 Thread Leann Ogasawara
** Tags added: xen

-- 
Random segfaults with linux-image-2.6.24-26-xen
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 504164] Re: Random segfaults with linux-image-2.6.24-26-xen

2010-01-08 Thread Tim Gardner
** Also affects: linux (Ubuntu Hardy)
   Importance: Undecided
   Status: New

** Changed in: linux (Ubuntu Hardy)
   Importance: Undecided = Medium

** Changed in: linux (Ubuntu Hardy)
   Status: New = In Progress

** Changed in: linux (Ubuntu Hardy)
Milestone: None = ubuntu-8.04.3

** Changed in: linux (Ubuntu Hardy)
 Assignee: (unassigned) = John Johansen (jjohansen)

-- 
Random segfaults with linux-image-2.6.24-26-xen
https://bugs.launchpad.net/bugs/504164
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs