Release date:
Updated on:
Affected Systems:
Linux kernel 2.6.x
Unaffected system:
Linux kernel 2.6.37
Description:
--------------------------------------------------------------------------------
Bugtraq id: 46488
CVE (CAN) ID: CVE-2011-1044
Linux Kernel is the Kernel of the Linux operating system.
Linux Kernel has a local information leakage vulnerability in the implementation of the ib_uverbs_poll_cq () function. Local attackers can exploit this vulnerability to obtain sensitive information.
<* Source: Dan Carpenter (error27@gmail.com)
Link: http://wiki.openvz.org/Download/kernel/rhel5/028stab092.2
Http://git.kernel.org /? P = linux/kernel/git/torvalds/linux-2.6.git; a = commit; h = 7182afea8d1afd432a17c18162cc3fd441d0da93
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Linux
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.kernel.org/