Ubuntu Security Notice USN-6774-1

Discussion in 'News Aggregator' started by Packet Storm, 18 May 2024.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 6774-1 - Zheng Wang discovered that the Broadcom FullMAC WLAN driver in the Linux kernel contained a race condition during device removal, leading to a use- after-free vulnerability. A physically proximate attacker could possibly use this to cause a denial of service. Sander Wiebing, Alvise de Faveri Tron, Herbert Bos, and Cristiano Giuffrida discovered that the Linux kernel mitigations for the initial Branch History Injection vulnerability were insufficient for Intel processors. A local attacker could potentially use this to expose sensitive information.

    Continue reading...
     

Share This Page

Loading...