CVE-2007-4133

Publication date 4 October 2007

Last updated 24 July 2024


Ubuntu priority

The (1) hugetlb_vmtruncate_list and (2) hugetlb_vmtruncate functions in fs/hugetlbfs/inode.c in the Linux kernel before 2.6.19-rc4 perform certain prio_tree calculations using HPAGE_SIZE instead of PAGE_SIZE units, which allows local users to cause a denial of service (panic) via unspecified vectors.

Read the notes from the security team

Status

Package Ubuntu Release Status
linux-source-2.6.15 6.06 LTS dapper
Fixed 2.6.15-51.66
linux-source-2.6.17 6.10 edgy
Fixed 2.6.17.1-12.42
linux-source-2.6.20 7.04 feisty
Not affected
linux-source-2.6.22 7.10 gutsy
Not affected

Notes


jdstrand

fixed in DSA 1381-1

References

Related Ubuntu Security Notices (USN)

    • USN-578-1
    • Linux kernel vulnerabilities
    • 14 February 2008
    • USN-558-1
    • Linux kernel vulnerabilities
    • 19 December 2007

Other references