[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

USN-3581-2 -- linux-image

ID: oval:org.secpod.oval:def:703991Date: (C)2018-02-23   (M)2024-04-17
Class: PATCHFamily: unix




linux-azure: Linux kernel for Microsoft Azure Cloud systems - linux-gcp: Linux kernel for Google Cloud Platform systems - linux-hwe: Linux hardware enablement kernel - linux-oem: Linux kernel for OEM processors Details: USN-3581-1 fixed vulnerabilities in the Linux kernel for Ubuntu 17.10. This update provides the corresponding updates for the Linux Hardware Enablement kernel from Ubuntu 17.10 for Ubuntu 16.04 LTS. Mohamed Ghannam discovered that the IPv4 raw socket implementation in the Linux kernel contained a race condition leading to uninitialized pointer usage. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. ChunYu Wang discovered that a use-after-free vulnerability existed in the SCTP protocol implementation in the Linux kernel. A local attacker could use this to cause a denial of service or possibly execute arbitrary code, Mohamed Ghannam discovered a use-after-free vulnerability in the DCCP protocol implementation in the Linux kernel. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. USN-3541-2 mitigated CVE-2017-5715 for the amd64 architecture in Ubuntu 16.04 LTS. This update provides the compiler-based retpoline kernel mitigation for the amd64 and i386 architectures. Original advisory Several security issues were fixed in the Linux kernel.

Platform:
Ubuntu 16.04
Product:
linux-image
linux-image-generic-4.13
linux-image-4.13
linux-image-lowlatency-4.13
Reference:
USN-3581-2
CVE-2017-17712
CVE-2017-15115
CVE-2017-8824
CVE-2017-5715
CVE    4
CVE-2017-15115
CVE-2017-17712
CVE-2017-8824
CVE-2017-5715
...
CPE    5
cpe:/o:ubuntu:ubuntu_linux:16.04
cpe:/a:linux:linux_image_metapackage
cpe:/a:linux:linux_image_lowlatency:4.13
cpe:/a:linux:linux_image:4.13
...

© SecPod Technologies