Candidate: CVE-2004-0887 References: http://www.novell.com/linux/security/advisories/2004_37_kernel.html http://www.securityfocus.com/bid/11489 http://xforce.iss.net/xforce/xfdb/17801 Description: SUSE Linux Enterprise Server 9 on the S/390 platform does not properly handle a certain privileged instruction, which allows local users to gain root privileges. Notes: dannf> 2.4 looks vulnerable; I've asked waldi's advice on applying it. Bugs: upstream: linux-2.6: 2.6.8-sarge-security: released (2.6.8-10) [s390-sacf-fix.dpatch] 2.4.27-sarge-security: released (2.4.27-10sarge2) [206_s390-sacf-fix.diff] 2.4.19-woody-security: 2.4.18-woody-security: 2.4.17-woody-security: 2.4.16-woody-security: 2.4.17-woody-security-hppa: 2.4.17-woody-security-ia64: 2.4.18-woody-security-hppa: