USN-3209-1: Linux kernel vulnerabilities
USN-3209-1: Linux kernel vulnerabilities Ubuntu Security Notice USN-3209-1 22nd February, 2017 linux, linux-raspi2 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.10 Summary Several security issues were fixed in the kernel. Software description linux – Linux kernel linux-raspi2 – Linux kernel for Raspberry Pi 2 Details It was discovered that the generic SCSI block layer in the Linux kernel didnot properly restrict write operations in certain situations. A localattacker could use this to cause a denial of service (system crash) orpossibly gain administrative privileges. (CVE-2016-10088) Jim Mattson discovered that the KVM implementation in the Linux kernelmismanages the #BP and #OF exceptions. A local attacker in a guest virtualmachine could use this to cause a denial of service (guest OS crash).(CVE-2016-9588) Andrey Konovalov discovered a use-after-free vulnerability in the DCCPimplementation in the Linux kernel. A local [ more… ]