CVE-2007-1865

Publication date 18 September 2007

Last updated 24 July 2024


Ubuntu priority

Negligible

Why this priority?

** DISPUTED ** The ipv6_getsockopt_sticky function in the kernel in Red Hat Enterprise Linux (RHEL) Beta 5.1.0 allows local users to obtain sensitive information (kernel memory contents) via a negative value of the len parameter. NOTE: this issue has been disputed in a bug comment, stating that "len is ignored when copying header info to the user's buffer."

Read the notes from the security team

Status

Package Ubuntu Release Status
linux 8.04 LTS hardy
Not affected
linux-source-2.6.15 6.06 LTS dapper
Not affected
linux-source-2.6.17 6.10 edgy
Not affected
linux-source-2.6.20 7.04 feisty
Not affected
linux-source-2.6.22 7.10 gutsy
Not affected

Notes


kees

RHEL specific.