USN-3444-1: Linux kernel vulnerabilities Ubuntu Security Notice USN-3444-1 10th October, 2017 linux, linux-aws, linux-gke, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Summary Several security issues were fixed in the Linux kernel. Software description linux – Linux kernel linux-aws – Linux kernel for Amazon Web Services (AWS) systems linux-gke – Linux kernel for Google Container Engine (GKE) systems linux-kvm – Linux kernel for cloud environments linux-raspi2 – Linux kernel for Raspberry Pi 2 linux-snapdragon – Linux kernel for Snapdragon processors Details Jan H. Schönherr discovered that the Xen subsystem did not properly handleblock IO merges correctly in some situations. An attacker in a guest vmcould use this to cause a denial of service (host crash) or possibly gainadministrative privileges in the host. (CVE-2017-12134) Andrey Konovalov discovered that a divide-by-zero error [ more… ]