CVE-2007-6417

NameCVE-2007-6417
DescriptionThe shmem_getpage function (mm/shmem.c) in Linux kernel 2.6.11 through 2.6.23 does not properly clear allocated memory in some rare circumstances related to tmpfs, which might allow local users to read sensitive kernel data or cause a denial of service (crash).
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDSA-1436-1

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
fai-kernelssourceetch1.17+etch.13etch6DSA-1436-1
linux-2.6sourceetch2.6.18.dfsg.1-13etch6DSA-1436-1
linux-2.6source(unstable)2.6.23-2
user-mode-linuxsourceetch2.6.18-1um-2etch.13etch6DSA-1436-1

Search for package or bug name: Reporting problems