Ubuntu Security Notice USN-3169-4

Discussion in 'News Aggregator' started by Packet Storm, 12 Jan 2017.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 3169-4 - Baozeng Ding discovered a race condition that could lead to a use-after- free in the Advanced Linux Sound Architecture subsystem of the Linux kernel. A local attacker could use this to cause a denial of service. Andrey Konovalov discovered that signed integer overflows existed in the setsockopt system call when handling the SO_SNDBUFFORCE and SO_RCVBUFFORCE options. A local attacker with the CAP_NET_ADMIN capability could use this to cause a denial of service. Various other issues were also addressed.

    Continue reading...
     

Share This Page

Loading...