Candidate: CVE-2012-3510 PublicDate: 2012-10-03 11:02:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3510 http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=f0ec1aaf54caddd21c259aea8b2ecfbde4ee4fb9 http://seclists.org/oss-sec/2012/q3/255 Description: Use-after-free vulnerability in the xacct_add_tsk function in kernel/tsacct.c in the Linux kernel before 2.6.19 allows local users to obtain potentially sensitive information from kernel memory or cause a denial of service (system crash) via a taskstats TASKSTATS_CMD_ATTR_PID command. Ubuntu-Description: Notes: jdstrand> linux-armadaxp is maintained by OEM sbeattie> introduced by 9acc1853519a0473620d424105f9d49ea5b4e62e and only if TASK_XACCT is enabled. Bugs: http://bugzilla.openvz.org/show_bug.cgi?id=2294 https://bugzilla.redhat.com/show_bug.cgi?id=849722 https://launchpad.net/bugs/1042443 Priority: low Discovered-by: Assigned-to: CVSS: Patches_linux: break-fix: 9acc1853519a0473620d424105f9d49ea5b4e62e f0ec1aaf54caddd21c259aea8b2ecfbde4ee4fb9 upstream_linux: released (2.6.19~rc4) hardy_linux: not-affected (2.6.24-5.9) lucid_linux: not-affected (2.6.32-1.1) natty_linux: not-affected (2.6.37-2.9) oneiric_linux: not-affected (2.6.39-0.0) precise_linux: not-affected (3.1.0-1.1) quantal_linux: not-affected (3.4.0-1.1) devel_linux: not-affected (3.4.0-1.1) Patches_linux-ec2: upstream_linux-ec2: released (2.6.19~rc4) hardy_linux-ec2: DNE lucid_linux-ec2: not-affected (2.6.32-300.1) natty_linux-ec2: DNE oneiric_linux-ec2: DNE precise_linux-ec2: DNE quantal_linux-ec2: DNE devel_linux-ec2: DNE Patches_linux-mvl-dove: upstream_linux-mvl-dove: released (2.6.19~rc4) hardy_linux-mvl-dove: DNE lucid_linux-mvl-dove: ignored (reached end-of-life) natty_linux-mvl-dove: DNE oneiric_linux-mvl-dove: DNE precise_linux-mvl-dove: DNE quantal_linux-mvl-dove: DNE devel_linux-mvl-dove: DNE Patches_linux-ti-omap4: upstream_linux-ti-omap4: released (2.6.19~rc4) hardy_linux-ti-omap4: DNE lucid_linux-ti-omap4: DNE natty_linux-ti-omap4: not-affected (2.6.38-1201.2) oneiric_linux-ti-omap4: not-affected (2.6.38-1309.13) precise_linux-ti-omap4: not-affected (3.0.0-1401.2) quantal_linux-ti-omap4: not-affected (3.4.0-1.1) devel_linux-ti-omap4: not-affected (3.4.0-1.1) Patches_linux-lts-backport-maverick: upstream_linux-lts-backport-maverick: released (2.6.19~rc4) hardy_linux-lts-backport-maverick: DNE lucid_linux-lts-backport-maverick: ignored (reached end-of-life) natty_linux-lts-backport-maverick: DNE oneiric_linux-lts-backport-maverick: DNE precise_linux-lts-backport-maverick: DNE quantal_linux-lts-backport-maverick: DNE devel_linux-lts-backport-maverick: DNE Patches_linux-fsl-imx51: upstream_linux-fsl-imx51: released (2.6.19~rc4) hardy_linux-fsl-imx51: DNE lucid_linux-fsl-imx51: ignored (reached end-of-life, does not affect buildd) natty_linux-fsl-imx51: DNE oneiric_linux-fsl-imx51: DNE precise_linux-fsl-imx51: DNE quantal_linux-fsl-imx51: DNE devel_linux-fsl-imx51: DNE Patches_linux-lts-backport-natty: upstream_linux-lts-backport-natty: released (2.6.19~rc4) hardy_linux-lts-backport-natty: DNE lucid_linux-lts-backport-natty: not-affected (2.6.38-1.27~lucid1) natty_linux-lts-backport-natty: DNE oneiric_linux-lts-backport-natty: DNE precise_linux-lts-backport-natty: DNE quantal_linux-lts-backport-natty: DNE devel_linux-lts-backport-natty: DNE Patches_linux-lts-backport-oneiric: upstream_linux-lts-backport-oneiric: released (2.6.19~rc4) hardy_linux-lts-backport-oneiric: DNE lucid_linux-lts-backport-oneiric: not-affected (3.0.0-5.6~lucid1) natty_linux-lts-backport-oneiric: DNE oneiric_linux-lts-backport-oneiric: DNE precise_linux-lts-backport-oneiric: DNE quantal_linux-lts-backport-oneiric: DNE devel_linux-lts-backport-oneiric: DNE Patches_linux-linaro-omap: upstream_linux-linaro-omap: released (2.6.19~rc4) hardy_linux-linaro-omap: DNE lucid_linux-linaro-omap: DNE natty_linux-linaro-omap: ignored (abandoned) oneiric_linux-linaro-omap: ignored (abandoned) precise_linux-linaro-omap: ignored (abandoned) quantal_linux-linaro-omap: not-affected (3.0.0-1007.9) devel_linux-linaro-omap: not-affected (3.0.0-1007.9) Patches_linux-linaro-shared: upstream_linux-linaro-shared: released (2.6.19~rc4) hardy_linux-linaro-shared: DNE lucid_linux-linaro-shared: DNE natty_linux-linaro-shared: DNE oneiric_linux-linaro-shared: ignored (abandoned) precise_linux-linaro-shared: ignored (abandoned) quantal_linux-linaro-shared: not-affected (3.0.0-1007.9) devel_linux-linaro-shared: not-affected (3.0.0-1007.9) Patches_linux-linaro-vexpress: upstream_linux-linaro-vexpress: released (2.6.19~rc4) hardy_linux-linaro-vexpress: DNE lucid_linux-linaro-vexpress: DNE natty_linux-linaro-vexpress: ignored (abandoned) oneiric_linux-linaro-vexpress: ignored (abandoned) precise_linux-linaro-vexpress: ignored (abandoned) quantal_linux-linaro-vexpress: not-affected (3.0.0-1007.9) devel_linux-linaro-vexpress: not-affected (3.0.0-1007.9) Patches_linux-qcm-msm: upstream_linux-qcm-msm: released (2.6.19~rc4) hardy_linux-qcm-msm: DNE lucid_linux-qcm-msm: ignored (abandoned) natty_linux-qcm-msm: ignored (abandoned) oneiric_linux-qcm-msm: ignored (abandoned) precise_linux-qcm-msm: ignored (abandoned) quantal_linux-qcm-msm: not-affected (2.6.31-800.2) devel_linux-qcm-msm: not-affected (2.6.31-800.2) Patches_linux-armadaxp: upstream_linux-armadaxp: released (2.6.19~rc4) hardy_linux-armadaxp: DNE lucid_linux-armadaxp: DNE natty_linux-armadaxp: DNE oneiric_linux-armadaxp: DNE precise_linux-armadaxp: not-affected (3.2.0-1600.1) quantal_linux-armadaxp: not-affected (3.2.0-1600.1) devel_linux-armadaxp: not-affected (3.2.0-1600.1)