Ubuntu Security Notice USN-5920-1

Discussion in 'News Aggregator' started by Packet Storm, 7 Mar 2023.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 5920-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Kyle Zeng discovered that the sysctl implementation in the Linux kernel contained a stack-based buffer overflow. A local attacker could use this to cause a denial of service or execute arbitrary code.

    Continue reading...
     

Share This Page

Loading...