
USN-3208-1: Linux kernel vulnerabilities
USN-3208-1: Linux kernel vulnerabilities Ubuntu Security Notice USN-3208-1 22nd February, 2017 linux, linux-snapdragon vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Summary Several security issues were fixed in the kernel. Software description linux – Linux kernel linux-snapdragon – Linux kernel for Snapdragon Processors Details It was discovered that the generic SCSI block layer in the Linux kernel didnot properly restrict write operations in certain situations. A localattacker could use this to cause a denial of service (system crash) orpossibly gain administrative privileges. (CVE-2016-10088) CAI Qian discovered that the sysctl implementation in the Linux kernel didnot properly perform reference counting in some situations. An unprivilegedattacker could use this to cause a denial of service (system hang).(CVE-2016-9191) Jim Mattson discovered that the KVM implementation in the Linux kernelmismanages the #BP and #OF exceptions. A local [ more… ]