Security Advisory kernel security update

Advisory: RHSA-2003:195-06
Type: Security Advisory
Severity: Important
Issued on: 2003-06-19
Last updated on: 2003-06-19
Affected Products: Red Hat Enterprise Linux AS (v. 2.1)
Red Hat Enterprise Linux ES (v. 2.1)
Red Hat Enterprise Linux WS (v. 2.1)
OVAL: N/A
CVEs (cve.mitre.org): CVE-2001-1572
CVE-2003-0247
CVE-2003-0248
CVE-2003-0364

Details

Updated kernel packages for Red Hat Enterprise Linux are now available
which address several security vulnerabilities.

The Linux kernel handles the basic functions of the operating system.

Several security issues have been found that affect the Linux kernel:

Al Viro found a security issue in the tty layer whereby any user could
cause a kernel oops. The Common Vulnerabilities and Exposures project
(cve.mitre.org) has assigned the name CAN-2003-0247 to this issue.

Andrea Arcangeli found an issue in the low-level mxcsr code in which a
malformed address would leave garbage in cpu state registers. The Common
Vulnerabilities and Exposures project (cve.mitre.org) has assigned the
name CAN-2003-0248 to this issue.

The TCP/IP fragment reassembly handling allows remote attackers to cause a
denial of service (CPU consumption) via packets that cause a large number
of hash table collisions, a vulnerability similar to CAN-2003-0244. The
Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned
the name CAN-2003-0364 to this issue.

These kernels also contain updated fixes for the ioperm security issue, as
well as fixes for a number of bugs.

It is recommended that users upgrade to these erratum kernels, which
contain patches to correct these vulnerabilities.


Solution

Release notes, driver notes, and driver disks for this update are available
at the following URL:

http://www.redhat.com/support/errata/rhel/

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

The procedure for upgrading the kernel manually is documented at:

http://www.redhat.com/support/docs/howto/kernel-upgrade/

Please read the directions for your architecture carefully before
proceeding with the kernel upgrade.

Please note that this update is also available via Red Hat Network. Many
people find this to be an easier way to apply updates. To use Red Hat
Network, launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system. Note that you need to select the kernel
explicitly on default configurations of up2date.

Updated packages

Red Hat Enterprise Linux AS (v. 2.1)

SRPMS:
kernel-2.4.9-e.25.src.rpm
File outdated by:  RHSA-2009:0001
    228305b8346a669cd440e44ff736b343
 
IA-32:
kernel-2.4.9-e.25.athlon.rpm
File outdated by:  RHSA-2009:0001
    cb5811644f7435fa729233b8ab3606a7
kernel-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    5c96c90918a65049577569981188d2ea
kernel-BOOT-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    aab781fdf7177748d634724b71ae894a
kernel-debug-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    f8015ba5abb095655116a2458864baee
kernel-doc-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    1861282ca77aef7b35b9196e61686675
kernel-enterprise-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    b0b3cbba76fa7c93208e4b5dadc454be
kernel-headers-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    15e49da2ce1fbe8f0e821117b5617cd8
kernel-smp-2.4.9-e.25.athlon.rpm
File outdated by:  RHSA-2009:0001
    1f52cfb99a57e475f16f56b2eab18118
kernel-smp-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    96cb361af6fa2f6e0addd77f183e66a2
kernel-source-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    4238f8bd5563e6eca59ad0ae90b12467
kernel-summit-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    d922266a5d9c489229df8bf85b1bf4a8
 
Red Hat Enterprise Linux ES (v. 2.1)

SRPMS:
kernel-2.4.9-e.25.src.rpm
File outdated by:  RHSA-2009:0001
    228305b8346a669cd440e44ff736b343
 
IA-32:
kernel-2.4.9-e.25.athlon.rpm
File outdated by:  RHSA-2009:0001
    cb5811644f7435fa729233b8ab3606a7
kernel-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    5c96c90918a65049577569981188d2ea
kernel-BOOT-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    aab781fdf7177748d634724b71ae894a
kernel-debug-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    f8015ba5abb095655116a2458864baee
kernel-doc-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    1861282ca77aef7b35b9196e61686675
kernel-headers-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    15e49da2ce1fbe8f0e821117b5617cd8
kernel-smp-2.4.9-e.25.athlon.rpm
File outdated by:  RHSA-2009:0001
    1f52cfb99a57e475f16f56b2eab18118
kernel-smp-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    96cb361af6fa2f6e0addd77f183e66a2
kernel-source-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    4238f8bd5563e6eca59ad0ae90b12467
 
Red Hat Enterprise Linux WS (v. 2.1)

SRPMS:
kernel-2.4.9-e.25.src.rpm
File outdated by:  RHSA-2009:0001
    228305b8346a669cd440e44ff736b343
 
IA-32:
kernel-2.4.9-e.25.athlon.rpm
File outdated by:  RHSA-2009:0001
    cb5811644f7435fa729233b8ab3606a7
kernel-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    5c96c90918a65049577569981188d2ea
kernel-BOOT-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    aab781fdf7177748d634724b71ae894a
kernel-debug-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    f8015ba5abb095655116a2458864baee
kernel-doc-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    1861282ca77aef7b35b9196e61686675
kernel-enterprise-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    b0b3cbba76fa7c93208e4b5dadc454be
kernel-headers-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    15e49da2ce1fbe8f0e821117b5617cd8
kernel-smp-2.4.9-e.25.athlon.rpm
File outdated by:  RHSA-2009:0001
    1f52cfb99a57e475f16f56b2eab18118
kernel-smp-2.4.9-e.25.i686.rpm
File outdated by:  RHSA-2009:0001
    96cb361af6fa2f6e0addd77f183e66a2
kernel-source-2.4.9-e.25.i386.rpm
File outdated by:  RHSA-2009:0001
    4238f8bd5563e6eca59ad0ae90b12467
 
(The unlinked packages above are only available from the Red Hat Network)

References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/