Severity : |
High
|
Published : |
2012-06-13
|
Modified : |
2012-06-13
|
Base Score : |
7.2
|
Details : |
The ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel before 2.6.39.1 does not properly handle memory allocation for non-initial fragments, which might allow local users to conduct buffer overflow attacks, and gain privileges or obtain sensitive information, via a crafted LDM partition table. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1017.
|
Product/Version : |
Consumer Mobilinux 5.0.24
Professional PRO 5.0.24
Pro 4.x
CGE 4.x
Mobilinux 4.x
CGE 5.x
Mobilinux 5.x
Professional PRO 5.0
Professional PRO 5.0
Carrier Grade CGE 6.0
|
|