new kernel release?

Pedro Fernandes Macedo webmaster at margo.bijoux.nom.br
Thu Jul 1 01:47:40 UTC 2004


James Lawrence wrote:

> i recieved a message from red hat notification tool that there is a 
> kernal update.
> version, 2.6.6-1.435.2.1   i have....2.6.6-1.435   what is the 
> difference? should i bother?
> is it going to give me problem's?
>
>
 From fedora-announce-list:

>This security update fixes the remote DoS possibility identified and fixed
>by Adam Osuchowski and Tomasz Dubinski in the netfilter code of the 2.6
>kernel. Note that this remote DoS can only be triggered when using the
>rarely used "-p tcp --tcp-option" options in the netfilter firewall
>subsystem. Fedora Core 2 systems are not vulnerable unless the administrator
>manually configured this rarely used option.
>
>For more information see
>http://www.securityfocus.com/archive/1/367615/2004-06-27/2004-07-03/0
>

So , unless you use the "-p tcp --tcp-option" in netfilter , you are safe.

--
Pedro Macedo





More information about the fedora-list mailing list