uname -a Linux www4.wimmekes.net 2.6.18-164.el5 #1 SMP Thu Sep 3 03:28:30 EDT 2009 x86_64 x86_64 x86_64 GNU/Linux The following steps will be taken: Remove [pmzr1ia4] CVE-2011-2525: Denial of Service in packet scheduler API Remove [trylhilt] CVE-2011-2492: Information leak in bluetooth implementation. Remove [ep6z4y56] CVE-2011-2213: Denial of service in inet_diag_bc_audit. Remove [7snxw87a] CVE-2011-1182: Missing validation check in signals implementation. Remove [rkxedi08] CVE-2011-1593: Denial of service in next_pidmap. Remove [d23sbn34] CVE-2011-1746: Integer overflow in agp_allocate_memory. Remove [0wyh5c2g] CVE-2011-1745, CVE-2011-2022: Privilege escalation in AGP subsystem. Remove [wtaj5tqr] CVE-2010-4649, CVE-2011-1044: Buffer overflow in InfiniBand uverb handling. Remove [e6orru31] CVE-2011-0695: Remote denial of service in InfiniBand setup. Remove [mfl6xksr] CVE-2011-1776: Missing validation for GPT partitions. Remove [690i7li6] CVE-2011-1573: Remote denial of service in SCTP. Remove [rj0spqi4] CVE-2011-0711: Information leak in XFS filesystem. Remove [7ruql4zv] CVE-2011-1576: Denial of service with VLAN packets and GRO. Remove [fl53oxz1] CVE-2011-1494, CVE-2011-1495: Privilege escalation in LSI MPT Fusion SAS 2.0 driver. Remove [7uxnfd59] CVE-2011-1078: Information leak in Bluetooth sco. Remove [48r5pq8z] CVE-2011-1577: Missing boundary checks in GPT partition handling. Remove [r0z5pjzs] Fix a packet flood when initializing a bridge device without STP. Remove [5wm00o6t] Denial of service in NFS server via reference count leak. Remove [imb5eyr4] USB Audio regression introduced by CVE-2010-1083 fix. Remove [v2chf9xo] CVE-2011-1163: Kernel information leak parsing malformed OSF partition tables. Remove [hxm8v15z] Buffer overflow in iptables CLUSTERIP target. Remove [m0u7qmyb] CVE-2011-1080, CVE-2011-1170, CVE-2011-1171, CVE-2011-1172: Information leaks in netfilter. Remove [yjcqgs27] CVE-2011-0726: Information leak in /proc/[pid]/stat. Remove [yxi8budh] CVE-2011-1093: Remote Denial of Service in DCCP. Remove [y49a6h5e] CVE-2011-1079: Missing validation in bnep_sock_ioctl. Remove [92gjm27g] CVE-2011-1090: Denial of Service in NFSv4 client. Remove [uvgk0uas] CVE-2011-1010: Denial of service parsing malformed Mac OS partition tables. Remove [gv6g85b7] Use-after-free in MPT driver. Remove [qth4hv6l] CVE-2010-4346: mmap_min_addr bypass in install_special_mapping. Remove [cvgowpaj] CVE-2011-1478: NULL dereference in GRO with promiscuous mode. Remove [182zzlm2] CVE-2010-1188: Use after free bug in tcp_rcv_state_process. Remove [bd787ovs] Fix connection timeouts due to shrinking tcp window with window scaling. Remove [4pgsos1i] Panic in kfree() due to race condition in acpi_bus_receive_event. Remove [l96yc9lh] CVE-2010-4249: Local denial of service vulnerability in UNIX sockets. Remove [iiqapvly] CVE-2010-4655: Information leak in ethtool_get_regs. Remove [xhu6qz3g] CVE-2010-4526: Remote denial of service vulnerability in SCTP. Remove [xfxusm19] CVE-2010-4158: Kernel information leak in socket filters. Remove [kp7rex7e] CVE-2010-4243: Denial of service due to wrong execve memory accounting. Remove [lvsjedoy] CVE-2010-4080 and CVE-2010-4081: Information leaks in sound drivers. Remove [0kiioi0x] CVE-2010-4075: Kernel information leak in serial core. Remove [6chaojbh] CVE-2010-4258: Failure to revert address limit override after oops. Remove [zmf4yehg] Integer overflow in sys_remap_file_pages. Remove [35vceg3x] CVE-2010-4073: Kernel information leaks in ipc compat subsystem. Remove [ihl33e7k] CVE-2010-3877: Kernel information leak in tipc driver. Remove [aepxbrph] CVE-2010-3296: Kernel information leak in cxgb driver. Remove [pupyo5g6] CVE-2010-3859: Heap overflow vulnerability in TIPC protocol. Remove [b7163rz2] CVE-2010-4161: Deadlock in socket queue subsystem. Remove [1p5n4ch0] Mitigate denial of service attacks with large argument lists. Remove [vl4n52f1] CVE-2010-3858: Denial of service vulnerability with large argument lists. Remove [db0z0jv6] CVE-2010-3880: Logic error in INET_DIAG bytecode auditing. Remove [2w6lhbjl] CVE-2010-4157: Memory corruption in Intel/ICP RAID driver. Remove [flebcmif] CVE-2010-4242: NULL pointer dereference in Bluetooth HCI UART driver. Remove [u2sl575d] CVE-2010-4248: Race condition in __exit_signal with multithreaded exec. Remove [zn1yg22q] CVE-2010-4083: Kernel information leak in semctl syscall. Remove [swtsdhab] CVE-2010-3876: Kernel information leak in packet subsystem. Remove [68xmf843] CVE-2010-3865: Integer overflow in RDS rdma page counting. Remove [wqwiix6r] CVE-2010-3442: Heap corruption vulnerability in ALSA core. Remove [152hsvia] CVE-2010-3432: Remote denial of service vulnerability in SCTP. Remove [w099iyz1] Buffer overflow in icmpmsg_put. Remove [mnrpgpgg] CVE-2010-2963: Kernel memory overwrite in VIDIOCSMICROCODE. Remove [zdmji93g] CVE-2010-3477: Information leak in tcf_act_police_dump. Remove [s75avpho] CVE-2010-3086: Denial of Service in futex atomic operations. Remove [wxpsxu6h] CVE-2010-3078: Information leak in xfs_ioc_fsgetxattr. Remove [jtuzdekt] CVE-2010-3067: Information leak in sys_io_submit. Remove [153glh95] CVE-2010-3904: Local privilege escalation vulnerability in RDS sockets. Remove [9u1zazdw] CVE-2010-2942: Information leaks in traffic control dump structures. Remove [vspvgnbw] CVE-2010-1083: Information leak in USB implementation. Remove [iauwz7oz] CVE-2010-3015: Integer overflow in ext4 filesystem. Remove [7nn5abmd] Improved fix to CVE-2010-1173. Remove [azqvmkpj] CVE-2010-2492: Privilege Escalation in eCryptfs. Remove [q9ejpghj] CVE-2010-2798: Denial of service in GFS2. Remove [50ydcp2k] CVE-2010-3081: Privilege escalation through stack underflow in compat. Remove [d70b6mu3] CVE-2010-2240: Privilege escalation vulnerability in memory management. Remove [64uuywfp] CVE-2010-2226: Read access to write-only files in XFS filesystem. Remove [l3hj32nw] CVE-2010-2521: Remote buffer overflow in NFSv4 server. Remove [loccf6ch] CVE-2010-2524: False CIFS mount via DNS cache poisoning. Remove [w3ehfpsa] CVE-2010-2248: Remote denial of service in CIFS client. Remove [u958g9e9] CVE-2010-1084: Privilege escalation in Bluetooth subsystem. Remove [jdz2b6if] CVE-2010-1641: Permission check bypass in GFS2 Remove [yiy681vs] CVE-2010-1437: Privilege escalation in key management Remove [clp3q6gu] CVE-2010-0622: Privilege escalation by futex corruption Remove [4r859jdr] CVE-2010-1173: Remote denial of service in SCTP Remove [a8sv0as5] CVE-2010-0291: Multiple denial of service bugs in mmap and mremap Remove [qhhsuzxb] CVE-2010-1187: Denial of service in TIPC Remove [02oqlq7p] CVE-2010-1088: Privilege escalation with automount symlinks Remove [thah1twk] CVE-2010-1087: Oops when truncating a file in NFS Remove [luem5fyt] CVE-2010-1436: Privilege escalation in GFS2 server Remove [rlj9cyma] CVE-2010-0307: Denial of service on amd64 Remove [i3dv1qbk] CVE-2010-1085: Divide-by-zero in Intel HDA driver. Remove [xsyh9uvr] Floating point state corruption after signal. Remove [uczocwm2] CVE-2010-0727: Denial of Service in GFS2 locking. Remove [n1qfp8zi] CVE-2009-4307: Divide-by-zero mounting an ext4 filesystem. Remove [9xzlm399] CVE-2009-4308: NULL pointer dereference in ext4 decoding EROFS w/o a journal. Remove [cmtmkkrb] CVE-2010-0415: Information Leak in sys_move_pages Remove [j9b4gz5o] CVE-2010-0007: Missing capabilities check in ebtables module. Remove [03a8wij5] CVE-2010-0437: NULL pointer dereference in ip6_dst_lookup_tail. Remove [j6v9kthq] Kernel crash forwarding network traffic. Remove [cgf7gme8] Kernel panic in do_wp_page under heavy I/O load. Remove [bpmy5hee] CVE-2009-4138: NULL pointer dereference flaw in firewire-ohci driver. Remove [sx7tsqio] CVE-2006-6304: Rewrite attack flaw in do_coredump. Remove [wi310xfc] CVE-2009-4272: Remote DOS vulnerabilities in routing hash table. Remove [7ee16ecv] CVE-2009-4020: Buffer overflow mounting corrupted hfs filesystem. Remove [2q455ku5] CVE-2009-4021: Denial of service in fuse_direct_io. Remove [wl9i2vdp] CVE-2009-3080: Privilege Escalation in GDT driver. Remove [uokli30g] CVE-2009-4141: Local privilege escalation in fasync_helper(). Remove [n7t3hv54] CVE-2009-4536: Denial of service in e1000 driver. Remove [ud8m6yly] CVE-2009-4537: Buffer underflow in r8169 driver. Remove [rh9etyg9] CVE-2009-4538: Denial of service in e1000e driver. Remove [imnsjeo2] CVE-2007-4567: Remote denial of service in IPv6 Remove [bl4nb8np] CVE-2009-3612: Information leak in the netlink subsystem. Remove [x5pyixyy] CVE-2009-3726: NFSv4: Denial of Service in NFS client. Remove [r2md2nmn] CVE-2009-3620: NULL pointer dereference in ATI Rage 128 driver. Remove [culjz733] CVE-2009-3621: Denial of service shutting down abstract-namespace sockets. Remove [v5mxqvdf] CVE-2009-2695: SELinux does not enforce mmap_min_addr sysctl. Remove [ck24a9rk] CVE-2009-3547: NULL pointer dereference opening pipes. Remove [1ntkzxwg] CVE-2009-2908: NULL pointer dereference in eCryptfs. Remove [8u2ym9so] CVE-2009-3613: Remote denial of service in r8169 driver. Remove [7surllfg] CVE-2009-3228: Information leaks in networking systems. Remove [d931py55] CVE-2009-3286: Incorrect permissions check in NFSv4. Remove [ghoz0gah] CVE-2009-2849: NULL pointer dereference in md. Remove [707xjotm] Clear garbage data on the kernel stack when handling signals. Removing [pmzr1ia4] CVE-2011-2525: Denial of Service in packet scheduler API Removing [trylhilt] CVE-2011-2492: Information leak in bluetooth implementation. Removing [ep6z4y56] CVE-2011-2213: Denial of service in inet_diag_bc_audit. Removing [7snxw87a] CVE-2011-1182: Missing validation check in signals implementation. Removing [rkxedi08] CVE-2011-1593: Denial of service in next_pidmap. Removing [d23sbn34] CVE-2011-1746: Integer overflow in agp_allocate_memory. Removing [0wyh5c2g] CVE-2011-1745, CVE-2011-2022: Privilege escalation in AGP subsystem. Removing [wtaj5tqr] CVE-2010-4649, CVE-2011-1044: Buffer overflow in InfiniBand uverb handling. Removing [e6orru31] CVE-2011-0695: Remote denial of service in InfiniBand setup. Removing [mfl6xksr] CVE-2011-1776: Missing validation for GPT partitions. Removing [690i7li6] CVE-2011-1573: Remote denial of service in SCTP. Removing [rj0spqi4] CVE-2011-0711: Information leak in XFS filesystem. Removing [7ruql4zv] CVE-2011-1576: Denial of service with VLAN packets and GRO. Removing [fl53oxz1] CVE-2011-1494, CVE-2011-1495: Privilege escalation in LSI MPT Fusion SAS 2.0 driver. Removing [7uxnfd59] CVE-2011-1078: Information leak in Bluetooth sco. Removing [48r5pq8z] CVE-2011-1577: Missing boundary checks in GPT partition handling. Removing [r0z5pjzs] Fix a packet flood when initializing a bridge device without STP. Removing [5wm00o6t] Denial of service in NFS server via reference count leak. Removing [imb5eyr4] USB Audio regression introduced by CVE-2010-1083 fix. Removing [v2chf9xo] CVE-2011-1163: Kernel information leak parsing malformed OSF partition tables. Removing [hxm8v15z] Buffer overflow in iptables CLUSTERIP target. Removing [m0u7qmyb] CVE-2011-1080, CVE-2011-1170, CVE-2011-1171, CVE-2011-1172: Information leaks in netfilter. Removing [yjcqgs27] CVE-2011-0726: Information leak in /proc/[pid]/stat. Removing [yxi8budh] CVE-2011-1093: Remote Denial of Service in DCCP. Removing [y49a6h5e] CVE-2011-1079: Missing validation in bnep_sock_ioctl. Removing [92gjm27g] CVE-2011-1090: Denial of Service in NFSv4 client. Removing [uvgk0uas] CVE-2011-1010: Denial of service parsing malformed Mac OS partition tables. Removing [gv6g85b7] Use-after-free in MPT driver. Removing [qth4hv6l] CVE-2010-4346: mmap_min_addr bypass in install_special_mapping. Removing [cvgowpaj] CVE-2011-1478: NULL dereference in GRO with promiscuous mode. Removing [182zzlm2] CVE-2010-1188: Use after free bug in tcp_rcv_state_process. Removing [bd787ovs] Fix connection timeouts due to shrinking tcp window with window scaling. Removing [4pgsos1i] Panic in kfree() due to race condition in acpi_bus_receive_event. Removing [l96yc9lh] CVE-2010-4249: Local denial of service vulnerability in UNIX sockets. Removing [iiqapvly] CVE-2010-4655: Information leak in ethtool_get_regs. Removing [xhu6qz3g] CVE-2010-4526: Remote denial of service vulnerability in SCTP. Removing [xfxusm19] CVE-2010-4158: Kernel information leak in socket filters. Removing [kp7rex7e] CVE-2010-4243: Denial of service due to wrong execve memory accounting. Removing [lvsjedoy] CVE-2010-4080 and CVE-2010-4081: Information leaks in sound drivers. Removing [0kiioi0x] CVE-2010-4075: Kernel information leak in serial core. Removing [6chaojbh] CVE-2010-4258: Failure to revert address limit override after oops. Removing [zmf4yehg] Integer overflow in sys_remap_file_pages. Removing [35vceg3x] CVE-2010-4073: Kernel information leaks in ipc compat subsystem. Removing [ihl33e7k] CVE-2010-3877: Kernel information leak in tipc driver. Removing [aepxbrph] CVE-2010-3296: Kernel information leak in cxgb driver. Removing [pupyo5g6] CVE-2010-3859: Heap overflow vulnerability in TIPC protocol. Removing [b7163rz2] CVE-2010-4161: Deadlock in socket queue subsystem. Removing [1p5n4ch0] Mitigate denial of service attacks with large argument lists. Removing [vl4n52f1] CVE-2010-3858: Denial of service vulnerability with large argument lists. Removing [db0z0jv6] CVE-2010-3880: Logic error in INET_DIAG bytecode auditing. Removing [2w6lhbjl] CVE-2010-4157: Memory corruption in Intel/ICP RAID driver. Removing [flebcmif] CVE-2010-4242: NULL pointer dereference in Bluetooth HCI UART driver. Removing [u2sl575d] CVE-2010-4248: Race condition in __exit_signal with multithreaded exec. Removing [zn1yg22q] CVE-2010-4083: Kernel information leak in semctl syscall. Removing [swtsdhab] CVE-2010-3876: Kernel information leak in packet subsystem. Removing [68xmf843] CVE-2010-3865: Integer overflow in RDS rdma page counting. Removing [wqwiix6r] CVE-2010-3442: Heap corruption vulnerability in ALSA core. Removing [152hsvia] CVE-2010-3432: Remote denial of service vulnerability in SCTP. Removing [w099iyz1] Buffer overflow in icmpmsg_put. Removing [mnrpgpgg] CVE-2010-2963: Kernel memory overwrite in VIDIOCSMICROCODE. Removing [zdmji93g] CVE-2010-3477: Information leak in tcf_act_police_dump. Removing [s75avpho] CVE-2010-3086: Denial of Service in futex atomic operations. Removing [wxpsxu6h] CVE-2010-3078: Information leak in xfs_ioc_fsgetxattr. Removing [jtuzdekt] CVE-2010-3067: Information leak in sys_io_submit. Removing [153glh95] CVE-2010-3904: Local privilege escalation vulnerability in RDS sockets. Removing [9u1zazdw] CVE-2010-2942: Information leaks in traffic control dump structures. Removing [vspvgnbw] CVE-2010-1083: Information leak in USB implementation. Removing [iauwz7oz] CVE-2010-3015: Integer overflow in ext4 filesystem. Removing [7nn5abmd] Improved fix to CVE-2010-1173. Removing [azqvmkpj] CVE-2010-2492: Privilege Escalation in eCryptfs. Removing [q9ejpghj] CVE-2010-2798: Denial of service in GFS2. Removing [50ydcp2k] CVE-2010-3081: Privilege escalation through stack underflow in compat. Removing [d70b6mu3] CVE-2010-2240: Privilege escalation vulnerability in memory management. Removing [64uuywfp] CVE-2010-2226: Read access to write-only files in XFS filesystem. Removing [l3hj32nw] CVE-2010-2521: Remote buffer overflow in NFSv4 server. Removing [loccf6ch] CVE-2010-2524: False CIFS mount via DNS cache poisoning. Removing [w3ehfpsa] CVE-2010-2248: Remote denial of service in CIFS client. Removing [u958g9e9] CVE-2010-1084: Privilege escalation in Bluetooth subsystem. Removing [jdz2b6if] CVE-2010-1641: Permission check bypass in GFS2 Removing [yiy681vs] CVE-2010-1437: Privilege escalation in key management Removing [clp3q6gu] CVE-2010-0622: Privilege escalation by futex corruption Removing [4r859jdr] CVE-2010-1173: Remote denial of service in SCTP Removing [a8sv0as5] CVE-2010-0291: Multiple denial of service bugs in mmap and mremap Removing [qhhsuzxb] CVE-2010-1187: Denial of service in TIPC Removing [02oqlq7p] CVE-2010-1088: Privilege escalation with automount symlinks Removing [thah1twk] CVE-2010-1087: Oops when truncating a file in NFS Removing [luem5fyt] CVE-2010-1436: Privilege escalation in GFS2 server Removing [rlj9cyma] CVE-2010-0307: Denial of service on amd64 Removing [i3dv1qbk] CVE-2010-1085: Divide-by-zero in Intel HDA driver. Removing [xsyh9uvr] Floating point state corruption after signal. Removing [uczocwm2] CVE-2010-0727: Denial of Service in GFS2 locking. Removing [n1qfp8zi] CVE-2009-4307: Divide-by-zero mounting an ext4 filesystem. Removing [9xzlm399] CVE-2009-4308: NULL pointer dereference in ext4 decoding EROFS w/o a journal. Removing [cmtmkkrb] CVE-2010-0415: Information Leak in sys_move_pages Removing [j9b4gz5o] CVE-2010-0007: Missing capabilities check in ebtables module. Removing [03a8wij5] CVE-2010-0437: NULL pointer dereference in ip6_dst_lookup_tail. Removing [j6v9kthq] Kernel crash forwarding network traffic. Removing [cgf7gme8] Kernel panic in do_wp_page under heavy I/O load. Removing [bpmy5hee] CVE-2009-4138: NULL pointer dereference flaw in firewire-ohci driver. Removing [sx7tsqio] CVE-2006-6304: Rewrite attack flaw in do_coredump. Removing [wi310xfc] CVE-2009-4272: Remote DOS vulnerabilities in routing hash table. Removing [7ee16ecv] CVE-2009-4020: Buffer overflow mounting corrupted hfs filesystem. Removing [2q455ku5] CVE-2009-4021: Denial of service in fuse_direct_io. Removing [wl9i2vdp] CVE-2009-3080: Privilege Escalation in GDT driver. Removing [uokli30g] CVE-2009-4141: Local privilege escalation in fasync_helper(). Removing [n7t3hv54] CVE-2009-4536: Denial of service in e1000 driver. Removing [ud8m6yly] CVE-2009-4537: Buffer underflow in r8169 driver. Removing [rh9etyg9] CVE-2009-4538: Denial of service in e1000e driver. Removing [imnsjeo2] CVE-2007-4567: Remote denial of service in IPv6 Removing [bl4nb8np] CVE-2009-3612: Information leak in the netlink subsystem. Removing [x5pyixyy] CVE-2009-3726: NFSv4: Denial of Service in NFS client. Removing [r2md2nmn] CVE-2009-3620: NULL pointer dereference in ATI Rage 128 driver. Removing [culjz733] CVE-2009-3621: Denial of service shutting down abstract-namespace sockets. Removing [v5mxqvdf] CVE-2009-2695: SELinux does not enforce mmap_min_addr sysctl. Removing [ck24a9rk] CVE-2009-3547: NULL pointer dereference opening pipes. Removing [1ntkzxwg] CVE-2009-2908: NULL pointer dereference in eCryptfs. Removing [8u2ym9so] CVE-2009-3613: Remote denial of service in r8169 driver. Removing [7surllfg] CVE-2009-3228: Information leaks in networking systems. Removing [d931py55] CVE-2009-3286: Incorrect permissions check in NFSv4. Removing [ghoz0gah] CVE-2009-2849: NULL pointer dereference in md. Removing [707xjotm] Clear garbage data on the kernel stack when handling signals.