LinuxDevCenter: Welcome to Security Alerts, an overview of recent Unix and open source security advisories. In this column, we look at problems in the Linux kernel, Oracle Database Server, Oracle Application Server, DB2 Universal Database, vpopmail, MIT Kerberos 5, cfengine, CDE libDtHelp, Anonymous CVS, Samba, the zlib library, Courier-IMAP, and Python.
A problem in the way the Linux kernel handles 64-bit file offset pointers can, under some conditions, be exploited by an attacker to view portions of kernel memory and gain access to sensitive information, such as the root password. This problem is reported to affect Linux kernel versions 2.4 through 2.4.26 and 2.6 through 2.6.7.
Read more... Source : eBCVG