USN-2969-1: Linux kernel (Utopic HWE) vulnerabilities
USN-2969-1: Linux kernel (Utopic HWE) vulnerabilities Ubuntu Security Notice USN-2969-1 9th May, 2016 linux-lts-utopic vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Summary Several security issues were fixed in the kernel. Software description linux-lts-utopic – Linux hardware enablement kernel from Utopic for Trusty Details Ralf Spenneberg discovered that the Aiptek Tablet USB device driver in theLinux kernel did not properly sanity check the endpoints reported by thedevice. An attacker with physical access could cause a denial of service(system crash). (CVE-2015-7515) Ben Hawkes discovered that the Linux kernel's AIO interface allowed singlewrites greater than 2GB, which could cause an integer overflow when writingto certain filesystems, socket or device types. A local attacker could thisto cause a denial of service (system crash) or possibly execute arbitrarycode. (CVE-2015-8830) Zach Riggle discovered that the Linux kernel's list [ more… ]