PublicDate: 2007-10-23 10:46:00 UTC Candidate: CVE-2007-3850 References: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=721151d004dcf01a71b12bb6b893f9160284cf6e https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3850 Description: The eHCA driver in Linux kernel 2.6 before 2.6.22, when running on PowerPC, does not properly map userspace resources, which allows local users to read portions of physical address space. Ubuntu-Description: Notes: jdstrand> PowerPC only kees> if CONFIG_PPC_64K_PAGES is disabled, this doesn't affect us. Bugs: Priority: medium Discovered-by: Assigned-to: kees CVSS: upstream_linux: released (2.6.22) dapper_linux-source-2.6.15: not-affected (CONFIG_PPC_64K_PAGES not defined) edgy_linux-source-2.6.17: not-affected (CONFIG_PPC_64K_PAGES not defined) feisty_linux-source-2.6.20: not-affected (CONFIG_PPC_64K_PAGES not defined) gutsy_linux-source-2.6.22: released (2.6.22-12.39) devel_linux: not-affected (2.6.22-12.39) upstream_linux-source-2.6.15: needs-triage upstream_linux-source-2.6.17: needs-triage upstream_linux-source-2.6.20: needs-triage upstream_linux-source-2.6.22: needs-triage