USN-3311-2: libnl vulnerability Ubuntu Security Notice USN-3311-2 19th June, 2017 libnl3 vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 LTS Summary libnl could be made to run programs as an administrator. Software description libnl3 – library for dealing with netlink sockets Details USN-3311-1 fixed a vulnerability in libnl. This update provides thecorresponding update for Ubuntu 12.04 ESM. Original advisory details: It was discovered that libnl incorrectly handled memory when performing certain operations. A local attacker could possibly use this issue to cause libnl to crash, resulting in a denial of service, or execute arbitrary code. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 12.04 LTS: libnl-3-200 3.2.3-2ubuntu2.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to reboot [ more… ]