Ubuntu Security Notice USN-3487-1

Discussion in 'News Aggregator' started by Packet Storm, 23 Nov 2017.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 3487-1 - It was discovered that the KVM subsystem in the Linux kernel did not properly keep track of nested levels in guest page tables. A local attacker in a guest VM could use this to cause a denial of service or possibly execute arbitrary code in the host OS. It was discovered that on the PowerPC architecture, the kernel did not properly sanitize the signal stack when handling sigreturn. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Various other issues were also addressed.

    Continue reading...
     

Share This Page

Loading...