Ubuntu Security Notice USN-3445-1

Discussion in 'News Aggregator' started by Packet Storm, 11 Oct 2017.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 3445-1 - Eyal Itkin discovered that the IP over IEEE 1394 implementation in the Linux kernel contained a buffer overflow when handling fragmented packets. A remote attacker could use this to possibly execute arbitrary code with administrative privileges. Andrey Konovalov discovered that a divide-by-zero error existed in the TCP stack implementation in the Linux kernel. A local attacker could use this to cause a denial of service. Various other issues were also addressed.

    Continue reading...
     

Share This Page

Loading...