Updated kernel packages fix vulnerabilities
A race condition in the directory notification subsystem (dnotify)
in Linux kernel 2.6.x before 2.6.24.6, and 2.6.25 before 2.6.25.1,
allows local users to cause a denial of service (OOPS) and possibly
gain privileges via unspecified vectors. (CVE-2008-1375)
The Linux kernel before 2.6.25.2 does not apply a certain protection
mechanism for fcntl functionality, which allows local users to (1)
execute code in parallel or (2) exploit a race condition to obtain
re-ordered access to the descriptor table. (CVE-2008-1669)
Additionaly, the updated kernel for Mandriva Linux 2008.0 has bug
fixes for sound on NEC S970 systems, an oops in module rt73, and the
-devel package fixes DKMS builds.
To update your kernel, please follow the directions located at:
http://www.mandriva.com/en/security/kernelupdate