The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX locks on files that are setgid without group-execute permission, which allows local users to cause a denial of service (BUG and system crash) by locking a file on a (1) GFS or (2) GFS2 filesystem, and then changing this files permissions.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Linux_kernel | Linux | * | 2.6.33.1 (including) |
Red Hat Enterprise Linux 5 | RedHat | gfs-kmod-0:0.1.34-12.el5 | * |
Red Hat Enterprise Linux 5 | RedHat | kernel-0:2.6.18-194.el5 | * |
Red Hat Enterprise Linux 5.4.Z - Server Only | RedHat | gfs-kmod-0:0.1.34-2.el5_4.3 | * |
Red Hat Enterprise Linux 5.4.Z - Server Only | RedHat | kernel-0:2.6.18-164.17.1.el5 | * |
Linux | Ubuntu | hardy | * |
Linux | Ubuntu | intrepid | * |
Linux | Ubuntu | jaunty | * |
Linux | Ubuntu | karmic | * |
Linux | Ubuntu | lucid | * |
Linux | Ubuntu | upstream | * |
Linux-source-2.6.15 | Ubuntu | dapper | * |
Linux-source-2.6.15 | Ubuntu | upstream | * |