No Image

USN-3159-1: Linux kernel vulnerability

2016-12-21 KENNETH 0

USN-3159-1: Linux kernel vulnerability Ubuntu Security Notice USN-3159-1 20th December, 2016 linux vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 LTS Summary The system could be made to expose sensitive information. Software description linux – Linux kernel Details It was discovered that a race condition existed in the procfsenviron_read function in the Linux kernel, leading to an integerunderflow. A local attacker could use this to expose sensitiveinformation (kernel memory). Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 12.04 LTS: linux-image-3.2.0-119-generic-pae 3.2.0-119.162 linux-image-3.2.0-119-omap 3.2.0-119.162 linux-image-powerpc-smp 3.2.0.119.134 linux-image-3.2.0-119-powerpc-smp 3.2.0-119.162 linux-image-generic-pae 3.2.0.119.134 linux-image-highbank 3.2.0.119.134 linux-image-3.2.0-119-powerpc64-smp 3.2.0-119.162 linux-image-virtual 3.2.0.119.134 linux-image-powerpc64-smp 3.2.0.119.134 linux-image-generic 3.2.0.119.134 linux-image-3.2.0-119-generic 3.2.0-119.162 linux-image-3.2.0-119-virtual 3.2.0-119.162 linux-image-omap 3.2.0.119.134 linux-image-3.2.0-119-highbank 3.2.0-119.162 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to reboot [ more… ]

No Image

USN-3159-2: Linux kernel (OMAP4) vulnerability

2016-12-21 KENNETH 0

USN-3159-2: Linux kernel (OMAP4) vulnerability Ubuntu Security Notice USN-3159-2 20th December, 2016 linux-ti-omap4 vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 LTS Summary The system could be made to expose sensitive information. Software description linux-ti-omap4 – Linux kernel for OMAP4 Details It was discovered that a race condition existed in the procfsenviron_read function in the Linux kernel, leading to an integerunderflow. A local attacker could use this to expose sensitiveinformation (kernel memory). Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 12.04 LTS: linux-image-3.2.0-1497-omap4 3.2.0-1497.124 linux-image-omap4 3.2.0.1497.92 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to reboot your computer to makeall the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates havebeen given a new [ more… ]

No Image

USN-3160-1: Linux kernel vulnerabilities

2016-12-21 KENNETH 0

USN-3160-1: Linux kernel vulnerabilities Ubuntu Security Notice USN-3160-1 20th December, 2016 linux vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Summary Several security issues were fixed in the kernel. Software description linux – Linux kernel Details CAI Qian discovered that shared bind mounts in a mount namespaceexponentially added entries without restriction to the Linux kernel's mounttable. A local attacker could use this to cause a denial of service (systemcrash). (CVE-2016-6213) It was discovered that a race condition existed in the procfsenviron_read function in the Linux kernel, leading to an integerunderflow. A local attacker could use this to expose sensitiveinformation (kernel memory). (CVE-2016-7916) Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 14.04 LTS: linux-image-powerpc-smp 3.13.0.106.114 linux-image-powerpc-e500mc 3.13.0.106.114 linux-image-3.13.0-106-powerpc64-emb 3.13.0-106.153 linux-image-3.13.0-106-lowlatency 3.13.0-106.153 linux-image-3.13.0-106-generic 3.13.0-106.153 linux-image-generic 3.13.0.106.114 [ more… ]

No Image

USN-3160-2: Linux kernel (Trusty HWE) vulnerabilities

2016-12-21 KENNETH 0

USN-3160-2: Linux kernel (Trusty HWE) vulnerabilities Ubuntu Security Notice USN-3160-2 20th December, 2016 linux-lts-trusty vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 LTS Summary Several security issues were fixed in the kernel. Software description linux-lts-trusty – Linux hardware enablement kernel from Trusty for Precise Details USN-3160-1 fixed vulnerabilities in the Linux kernel for Ubuntu 14.04LTS. This update provides the corresponding updates for the LinuxHardware Enablement (HWE) kernel from Ubuntu 14.04 LTS for Ubuntu12.04 LTS. CAI Qian discovered that shared bind mounts in a mount namespaceexponentially added entries without restriction to the Linux kernel's mounttable. A local attacker could use this to cause a denial of service (systemcrash). (CVE-2016-6213) It was discovered that a race condition existed in the procfsenviron_read function in the Linux kernel, leading to an integerunderflow. A local attacker could use this [ more… ]

No Image

Introducing Brotli compression in Microsoft Edge

2016-12-21 KENNETH 0

Introducing Brotli compression in Microsoft Edge Beginning with EdgeHTML 15.14986, Microsoft Edge supports Brotli as an HTTP content-encoding method. This change will be released to stable builds with the Windows 10 Creator’s Update early next year, but you can preview it now via the Windows Insider Program. With this release, Brotli will be broadly interoperable across browsers, with support in the latest versions of Microsoft Edge, Firefox, and Chrome. Brotli is a compression format defined in RFC 7932, previously available as part of the WOFF2 font format. When used as an HTTP content-encoding method, Brotli achieves up to 20% better compression ratios with similar compression and decompression speeds (PDF). This ultimately results in substantially reduced page weight for users, improving load times without substantially impacting client-side CPU costs. As compared to existing algorithms, like Deflate, Brotli compression is more efficient in terms [ more… ]