Ubuntu Security Notice USN-3291-1

Discussion in 'News Aggregator' started by Packet Storm, 17 May 2017.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 3291-1 - Dmitry Vyukov discovered that the generic SCSI subsystem in the Linux kernel contained a stack-based buffer overflow. A local attacker with access to an sg device could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that a NULL pointer dereference existed in the Direct Rendering Manager driver for VMWare devices in the Linux kernel. A local attacker could use this to cause a denial of service. Various other issues were also addressed.

    Continue reading...
     

Share This Page

Loading...