[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

USN-3583-1 -- linux-image

ID: oval:org.secpod.oval:def:703996Date: (C)2018-02-27   (M)2024-04-17
Class: PATCHFamily: unix




linux: Linux kernel Details: It was discovered that an out-of-bounds write vulnerability existed in the Flash-Friendly File System in the Linux kernel. An attacker could construct a malicious file system that, when mounted, could cause a denial of service or possibly execute arbitrary code. It was discovered that a race condition leading to a use-after-free vulnerability existed in the ALSA PCM subsystem of the Linux kernel. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that the KVM implementation in the Linux kernel allowed passthrough of the diagnostic I/O port 0x80. An attacker in a guest VM could use this to cause a denial of service in the host OS. Bo Zhang discovered that the netlink wireless configuration interface in the Linux kernel did not properly validate attributes when handling certain requests. A local attacker with the CAP_NET_ADMIN could use this to cause a denial of service . Vitaly Mayatskikh discovered that the SCSI subsystem in the Linux kernel did not properly track reference counts when merging buffers. A local attacker could use this to cause a denial of service . It was discovered that the key management subsystem in the Linux kernel did not properly restrict key reads on negatively instantiated keys. A local attacker could use this to cause a denial of service . It was discovered that an integer overflow existed in the sysfs interface for the QLogic 24xx+ series SCSI driver in the Linux kernel. A local privileged attacker could use this to cause a denial of service . Otto Ebeling discovered that the memory manager in the Linux kernel did not properly check the effective UID in some situations. A local attacker could use this to expose sensitive information. It was discovered that the ATI Radeon framebuffer driver in the Linux kernel did not properly initialize a data structure returned to user space. A local attacker could use this to expose sensitive information . ChunYu Wang discovered that the iSCSI transport implementation in the Linux kernel did not properly validate data structures. A local attacker could use this to cause a denial of service . James Patrick-Evans discovered a race condition in the LEGO USB Infrared Tower driver in the Linux kernel. A physically proximate attacker could use this to cause a denial of service or possibly execute arbitrary code. ChunYu Wang discovered that a use-after-free vulnerability existed in the SCTP protocol implementation in the Linux kernel. A local attacker could use this to cause a denial of service or possibly execute arbitrary code, It was discovered that the key management subsystem in the Linux kernel did not properly handle NULL payloads with non-zero length values. A local attacker could use this to cause a denial of service . It was discovered that the Bluebooth Network Encapsulation Protocol implementation in the Linux kernel did not validate the type of socket passed in the BNEPCONNADD ioctl. A local attacker with the CAP_NET_ADMIN privilege could use this to cause a denial of service or possibly execute arbitrary code. Andrey Konovalov discovered a use-after-free vulnerability in the USB serial console driver in the Linux kernel. A physically proximate attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that the netfilter passive OS fingerprinting module did not properly perform access control checks. A local attacker could improperly modify the systemwide OS fingerprint list. It was discovered that the HMAC implementation did not validate the state of the underlying cryptographic hash algorithm. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Denys Fedoryshchenko discovered a use-after-free vulnerability in the netfilter xt_TCPMSS filter of the Linux kernel. A remote attacker could use this to cause a denial of service . Gareth Evans discovered that the shm IPC subsystem in the Linux kernel did not properly restrict mapping page zero. A local privileged attacker could use this to execute arbitrary code. It was discovered that an integer overflow vulnerability existing in the IPv6 implementation in the Linux kernel. A local attacker could use this to cause a denial of service . Tommi Rantala and Brad Spengler discovered that the memory manager in the Linux kernel did not properly enforce the CONFIG_STRICT_DEVMEM protection mechanism. A local attacker with access to /dev/mem could use this to expose sensitive information or possibly execute arbitrary code. Mohamed Ghannam discovered a use-after-free vulnerability in the DCCP protocol implementation in the Linux kernel. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Mohamed Ghannam discovered a null pointer dereference in the RDS protocol implementation of the Linux kernel. A local attacker could use this to cause a denial of service . discovered that a race condition existed in loop block device implementation in the Linux kernel. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. USN-3524-1 mitigated CVE-2017-5754 for the amd64 architecture in Ubuntu 14.04 LTS. This update provides the corresponding mitigations for the ppc64el architecture. Original advisory Several security issues were fixed in the Linux kernel.

Platform:
Ubuntu 14.04
Product:
linux-image
linux-image-generic
linux-image-lowlatency
Reference:
USN-3583-1
CVE-2017-0750
CVE-2017-0861
CVE-2017-1000407
CVE-2017-12153
CVE-2017-12190
CVE-2017-12192
CVE-2017-14051
CVE-2017-14140
CVE-2017-14156
CVE-2017-14489
CVE-2017-15102
CVE-2017-15115
CVE-2017-15274
CVE-2017-15868
CVE-2017-16525
CVE-2017-17450
CVE-2017-17806
CVE-2017-18017
CVE-2017-5669
CVE-2017-7542
CVE-2017-7889
CVE-2017-8824
CVE-2018-5333
CVE-2018-5344
CVE-2017-5754
CVE    25
CVE-2017-0750
CVE-2017-1000407
CVE-2017-0861
CVE-2017-15274
...
CPE    5
cpe:/a:linux:linux_image
cpe:/a:linux:linux_image_generic
cpe:/a:linux:linux_image_metapackage
cpe:/a:linux:linux_image_lowlatency
...

© SecPod Technologies