CVE-2006-6304

Publication date 14 December 2006

Last updated 24 July 2024


Ubuntu priority

The do_coredump function in fs/exec.c in the Linux kernel 2.6.19 sets the flag variable to O_EXCL but does not use it, which allows context-dependent attackers to modify arbitrary files via a rewrite attack during a core dump.

Status

Package Ubuntu Release Status
linux-source-2.6.15 7.04 feisty Not in release
6.10 edgy Not in release
6.06 LTS dapper
Not affected
linux-source-2.6.17 7.04 feisty Not in release
6.10 edgy
Not affected
6.06 LTS dapper Not in release
linux-source-2.6.20 7.04 feisty
Not affected
6.10 edgy Not in release
6.06 LTS dapper Not in release