[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248678

 
 

909

 
 

195426

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2011-0842 -- Oracle systemtap

ID: oval:org.secpod.oval:def:1503320Date: (C)2021-01-08   (M)2023-02-20
Class: PATCHFamily: unix




Updated systemtap packages that fix two security issues are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having moderate security impact. Common Vulnerability Scoring System base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. Description SystemTap is an instrumentation system for systems running the Linux kernel, version 2.6. Developers can write scripts to collect data on the operation of the system. Two divide-by-zero flaws were found in the way SystemTap handled malformed debugging information in DWARF format. When SystemTap unprivileged mode was enabled, an unprivileged user in the stapusr group could use these flaws to crash the system. Additionally, a privileged user could trigger these flaws when tricked into instrumenting a specially-crafted ELF binary, even when unprivileged mode was not enabled. SystemTap users should upgrade to these updated packages, which contain a backported patch to correct these issues.

Platform:
Oracle Linux 6
Product:
systemtap
Reference:
ELSA-2011-0842
CVE-2011-1769
CVE-2011-1781
CVE    2
CVE-2011-1769
CVE-2011-1781
CPE    31
cpe:/a:systemtap:systemtap:0.5.9
cpe:/a:systemtap:systemtap:0.9.5
cpe:/a:systemtap:systemtap:0.9.7
cpe:/a:systemtap:systemtap:0.9.8
...

© SecPod Technologies