USN-3127-1: Linux kernel vulnerabilities
USN-3127-1: Linux kernel vulnerabilities Ubuntu Security Notice USN-3127-1 11th November, 2016 linux vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Summary Several security issues were fixed in the kernel. Software description linux – Linux kernel Details It was discovered that the compression handling code in the Advanced LinuxSound Architecture (ALSA) subsystem in the Linux kernel did not properlycheck for an integer overflow. A local attacker could use this to cause adenial of service (system crash). (CVE-2014-9904) Kirill A. Shutemov discovered that memory manager in the Linux kernel didnot properly handle anonymous pages. A local attacker could use this tocause a denial of service or possibly gain administrative privileges.(CVE-2015-3288) Vitaly Kuznetsov discovered that the Linux kernel did not properly suppresshugetlbfs support in X86 paravirtualized guests. An attacker in the guestOS could cause a denial [ more… ]