Ubuntu Security Notice USN-3189-1

Discussion in 'News Aggregator' started by Packet Storm, 4 Feb 2017.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 3189-1 - Mikulas Patocka discovered that the asynchronous multibuffer cryptographic daemon in the Linux kernel did not properly handle being invoked with incompatible algorithms. A local attacker could use this to cause a denial of service. Qidan He discovered that the ICMP implementation in the Linux kernel did not properly check the size of an ICMP header. A local attacker with CAP_NET_ADMIN could use this to expose sensitive information. Various other issues were also addressed.

    Continue reading...
     

Share This Page

Loading...