CVE-2012-2375

Priority
Medium
Description
The __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the NFSv4
implementation in the Linux kernel before 3.3.2 uses an incorrect length
variable during a copy operation, which allows remote NFS servers to cause
a denial of service (OOPS) by sending an excessive number of bitmap words
in an FATTR4_ACL reply. NOTE: this vulnerability exists because of an
incomplete fix for CVE-2011-4131.
Ubuntu-Description
A flaw was discovered in the Linux kernel's NFSv4 (Network file system)
handling of ACLs (access control lists). A remote NFS server (attacker)
could cause a denial of service (OOPS).
References
Bugs
Notes
jdstrand> linux-armadaxp is maintained by OEM
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):released (3.2.0-1604.7)
Ubuntu 12.10 (Quantal Quetzal):not-affected (3.2.0-1604.7)
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):deferred
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 12.10 (Quantal Quetzal):DNE
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):released (3.0.0-22.36~lucid1)
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 12.10 (Quantal Quetzal):DNE
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):ignored (abandoned)
Ubuntu 12.10 (Quantal Quetzal):ignored (abandoned)
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):ignored (abandoned)
Ubuntu 12.10 (Quantal Quetzal):ignored (abandoned)
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):ignored (abandoned)
Ubuntu 12.04 LTS (Precise Pangolin):ignored (abandoned)
Ubuntu 12.10 (Quantal Quetzal):ignored (abandoned)
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):released (2.6.38-15.61~lucid1)
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 12.10 (Quantal Quetzal):DNE
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:DNE
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):not-affected
Ubuntu 12.10 (Quantal Quetzal):DNE
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Patches:
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):ignored (reached end-of-life)
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 12.10 (Quantal Quetzal):DNE
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):ignored (reached end-of-life)
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 12.10 (Quantal Quetzal):DNE
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Source: linux (LP Ubuntu Debian)
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):deferred
Ubuntu 12.04 LTS (Precise Pangolin):released (3.2.0-26.41)
Ubuntu 12.10 (Quantal Quetzal):not-affected (3.4.0-2.4)
Ubuntu 13.04 (Raring Ringtail):not-affected (3.4.0-2.4)
Ubuntu 13.10 (Saucy Salamander):not-affected (3.4.0-2.4)
Patches:
Introduced by 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2Fixed by 20e0fa98b751facf9a1101edaefbc19c82616a68
Introduced by 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2Fixed by 5794d21ef4639f0e33440927bb903f9598c21e92
Introduced by 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2Fixed by 5a00689930ab975fdd1b37b034475017e460cf2a
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):released (3.2.0-1415.20)
Ubuntu 12.10 (Quantal Quetzal):not-affected (3.4.0-2.4)
Ubuntu 13.04 (Raring Ringtail):not-affected (3.4.0-2.4)
Ubuntu 13.10 (Saucy Salamander):not-affected (3.4.0-2.4)
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):ignored (abandoned)
Ubuntu 12.10 (Quantal Quetzal):ignored (abandoned)
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):ignored (reached end-of-life, does not affect buildd)
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 12.10 (Quantal Quetzal):DNE
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
Package
Upstream:released (3.4~rc6)
Ubuntu 10.04 LTS (Lucid Lynx):DNE
Ubuntu 12.04 LTS (Precise Pangolin):not-affected
Ubuntu 12.10 (Quantal Quetzal):DNE
Ubuntu 13.04 (Raring Ringtail):DNE
Ubuntu 13.10 (Saucy Salamander):DNE
More Information

Valid XHTML 1.0 Strict

Updated: 2013-05-10 19:14:38 UTC (commit 6828)