Security
Headlines
HeadlinesLatestCVEs

Headline

RHSA-2023:1588: Red Hat Security Advisory: kernel security update

An update for kernel is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.

Related CVEs:

  • CVE-2023-0266: A use-after-free flaw was found in the ALSA subsystem in sound/core/control.c in the Linux kernel. This flaw allows a local attacker to cause a use-after-free issue.
Red Hat Security Data
#vulnerability#linux#red_hat#sap

Issued:

2023-04-04

Updated:

2023-04-04

RHSA-2023:1588 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: kernel security update

Type/Severity

Security Advisory: Important

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for kernel is now available for Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The kernel packages contain the Linux kernel, the core of any Linux operating system.

Security Fix(es):

  • ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF (CVE-2023-0266)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

The system must be rebooted for this update to take effect.

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1 x86_64

Fixes

  • BZ - 2163379 - CVE-2023-0266 ALSA: pcm: Move rwsem lock inside snd_ctl_elem_read to prevent UAF

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 8.1

SRPM

kernel-4.18.0-147.81.1.el8_1.src.rpm

SHA-256: e22edc8e00dbb8f0da633e56249b77d7d9392599e4e7a42ec69b7cde7fe86051

ppc64le

bpftool-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: d247933deaaf305e3240b67289fe9f123445486aea0d0debf8c1f5231011d785

bpftool-debuginfo-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 5112e1f990b9c51b6694d90ea485e2a73587ea0dd67cd3e5c7dee46d43399339

kernel-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 8fe20152626dcb5803cde98e1772a98e98104c432da07e0baf92ecef251db1d2

kernel-abi-whitelists-4.18.0-147.81.1.el8_1.noarch.rpm

SHA-256: dac01b98c963829e3f9f6c69668a38716c93c366d72cf5151073853b11c8befb

kernel-core-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 5df3c803de0b1627057c9fb2d702b64b7927f2d51afa9e0a165fcd1f21dbdc5a

kernel-cross-headers-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 20b4a518fe0d98b6cea6e25497a6e38fc0a7829c614310c130cf3ec9b0fdb323

kernel-debug-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: ea876a5ca39cb7aa88540922e08b3ce53e76bd62ddfcf79db48d11823730fa56

kernel-debug-core-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: ce1d0ca61fe350cec8577d3b269b967a2477f0d9b025a6d4f3c7abbd122bb9a0

kernel-debug-debuginfo-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 8de2fcddcda2e333829c36674dabfacaa5385d2c5a6f4fff9140bf0173cab0d7

kernel-debug-devel-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 41a30b1348428e97e3ac5e0be24d219195a2a3fdd50ab8cb633e085ac028383f

kernel-debug-modules-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 5e30eccc3201831f5df28459526a1676a258eeafa4837bc992151ffd921cbc84

kernel-debug-modules-extra-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 1bef93a9dd562982eda83b27c637666bbe8149f3984036188e091714c26c67f6

kernel-debuginfo-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 4ecc189b8998bd0f4162869923528a0e5acc1b0bf962432cb217bc219a0cf67d

kernel-debuginfo-common-ppc64le-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 954d75bfe98d6757f27271a89af9ba0132dc46e3301f79c0d0eaac170aab056f

kernel-devel-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: fcb58d82493ac3cd6a79f1a9b8d5e8c5b7a1986b7bfd76b5689dcceda2962d05

kernel-doc-4.18.0-147.81.1.el8_1.noarch.rpm

SHA-256: 644199eacd0f24424381ff728b0e9ce6448186f826d4f0bebd6eb1e935840b2b

kernel-headers-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 692548ce7dd83947e22c39dbc7f93a2eedd3579b2de11f2cc791a83d57f4712d

kernel-modules-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 931e073a97adbf53bba2d70a7ce6496442f8b524e4bccf2341e8cac8fc415675

kernel-modules-extra-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 118306707f868d33af924f67a4eff88f2207fab3b894fcdf307e4465e5b90f88

kernel-tools-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 025b5231c7b2f3d9146c7ce02ad00ff2b2beecde3cbd3e2eef19e6417d9ada65

kernel-tools-debuginfo-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: afa121b5d095d4a80b87088b8007821790116a48c81809d9d61b64c048be9ade

kernel-tools-libs-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 6e1f92526db97a955a8cb633dc8c267f1e621480dc7f9e18c8e04d379aebbfe6

perf-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 69b3429fbd16fadc223fead731ecb4f89e9c8aebe53f6ab5ec3039723b4a78e7

perf-debuginfo-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: 16698579c076e6a4fe7d92c76d42a24d3e63fa955afe3e9b80a4fa3f9afdaf2b

python3-perf-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: ce68e3fcef3516072180eaa80eea7a60177ce54efa59affa548ab3f648b82936

python3-perf-debuginfo-4.18.0-147.81.1.el8_1.ppc64le.rpm

SHA-256: adb304134522b4312390443de6695d8109f93cf5cc80d806ce748bc822fe62a5

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.1

SRPM

kernel-4.18.0-147.81.1.el8_1.src.rpm

SHA-256: e22edc8e00dbb8f0da633e56249b77d7d9392599e4e7a42ec69b7cde7fe86051

x86_64

bpftool-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: d16a99aa1b84b92ecc39c2fbb052c339017a9fd81449555cccc8360a0f642666

bpftool-debuginfo-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 20d6c0e1bec49909bb9f5400de1c87cc9246a536b800c62276fcd4502bd491f0

kernel-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 922d87309ed47add0250ee420a8abfe7c3d69803fc7e56b5e50593937418ec5f

kernel-abi-whitelists-4.18.0-147.81.1.el8_1.noarch.rpm

SHA-256: dac01b98c963829e3f9f6c69668a38716c93c366d72cf5151073853b11c8befb

kernel-core-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 45dd6571d7109939b3fd8a6631643ca96895ae46b112ad00341b25504ae3e8f3

kernel-cross-headers-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: a63dc96b6fe1d178555e67d74b07a3ae5d1a2f8282d312e4a92131f58e5f1735

kernel-debug-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: e2a7e6821e89950bfce34b6a38c2eeb1f21b76d3f9aa7cd1a5fc7f154cf02dbd

kernel-debug-core-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 67c812a81281f523b7b485ced7a7bc0c8bb8243fc48ffe92866b9e50eb015773

kernel-debug-debuginfo-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 91e35dc7df79f29779d8bd4e07dfc893709ab67ea216a868bd29926e06044508

kernel-debug-devel-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: b81f3bf81e1b214e70f4697bce0c0c6494b3d5de169bf688698bd04495f52539

kernel-debug-modules-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 3b616d4f259a4ec6a3dd7ecad7ac507ccfba93b906a58ad2484ed720e8469d22

kernel-debug-modules-extra-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 01bd7643250aa89986bde2f3baf71e38f6e68b61b76f3e5cd14293a2fc45aac1

kernel-debuginfo-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 3da822fc11e98c397b55adc5de86d8fcb35b8db695bacea7ff036270823afdd8

kernel-debuginfo-common-x86_64-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 3459b04dcf5f408b4b25ddab002ebc048efe8e58b45337bfa3a9ecebbed2ccef

kernel-devel-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 27f1488e46e7e540351904ac4ee437cebf060c81f48e296d6d34439c129a9f04

kernel-doc-4.18.0-147.81.1.el8_1.noarch.rpm

SHA-256: 644199eacd0f24424381ff728b0e9ce6448186f826d4f0bebd6eb1e935840b2b

kernel-headers-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 80a66851d15b0ae36a96d0effb016a71d8a924e250248418f8b8c7b617fb98eb

kernel-modules-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: a67a60365e8fce3b90de2a670e5f7185fe85495f8a157215f67795db5056a5c5

kernel-modules-extra-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: c90b3128e1f2be594b653514798e0d7542c0ebc08ff5eac043208800bf5c1fc0

kernel-tools-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 9934423bb451a1a565655375639e99ce671d60d9d189ed443a93e426958a5caf

kernel-tools-debuginfo-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: be4306c8ef6b57feb07e094d2a6371639cede845423421678a4cf1a7fa7dd19a

kernel-tools-libs-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: a07686685e5e0794ae35918df4240cf412a12309976a485b899029002993ed4a

perf-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 453fd95ad364199d528a8e39c814e56cb9722273b85d5f42222c46406814f193

perf-debuginfo-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: df3905d993b6faa9b00e9a8e1ee23cc9ba9b5afaa639603eaaf1600e453b30fe

python3-perf-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: 4253f84e00916fc15c448a8204312b8f94bbb8f012db6b521e802a5314d3ba20

python3-perf-debuginfo-4.18.0-147.81.1.el8_1.x86_64.rpm

SHA-256: f3475865cf8d79a1c280d72cd2443460f9156ba07f193af7816e59c6e6ae34b1

The Red Hat security contact is [email protected]. More contact details at https://access.redhat.com/security/team/contact/.

Related news

Critical libwebp Vulnerability Under Active Exploitation - Gets Maximum CVSS Score

Google has assigned a new CVE identifier for a critical security flaw in the libwebp image library for rendering images in the WebP format that has come under active exploitation in the wild. Tracked as CVE-2023-5129, the issue has been given the maximum severity score of 10.0 on the CVSS rating system. It has been described as an issue rooted in the Huffman coding algorithm - With a specially

Apple's iOS 16.5 Fixes 3 Security Bugs Already Used in Attacks

Plus: Microsoft patches two zero-day flaws, Google’s Android and Chrome get some much-needed updates, and more.

CVE-2023-23694: DSA-2023-071: Dell VxRail Security Update for Multiple Third-Party Component Vulnerabilities – 7.0.450

Dell VxRail versions earlier than 7.0.450, contain(s) an OS command injection vulnerability in VxRail Manager. A local authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. Exploitation may lead to a system take over by an attacker.

Red Hat Security Advisory 2023-2104-01

Red Hat Security Advisory 2023-2104-01 - Red Hat Advanced Cluster Management for Kubernetes 2.5.8 images Red Hat Advanced Cluster Management for Kubernetes provides the capabilities to address common challenges that administrators and site reliability engineers face as they work across a range of public and private cloud environments. Clusters and applications are all visible and managed from a single console—with security policy built in. This advisory contains the container images for Red Hat Advanced Cluster Management for Kubernetes, which fix several bugs. Issues addressed include a denial of service vulnerability.

RHSA-2023:1953: Red Hat Security Advisory: Logging Subsystem 5.6.5 - Red Hat OpenShift security update

Logging Subsystem 5.6.5 - Red Hat OpenShift Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2023-27539: A denial of service vulnerability was found in rubygem-rack in how it parses headers. A carefully crafted input can cause header parsing to take an unexpected amount of time, possibly resulting in a denial of service. * CVE-2023-28120: A Cross-Site-Scripting vulnerability was found in rubygem ActiveSupport. If the new bytesplice method is called on a SafeBuffer with untrus...

RHSA-2023:1677: Red Hat Security Advisory: Red Hat Virtualization Host 4.4.z SP 1 security update batch#5 (oVirt-4.5.3-5)

An update for redhat-release-virtualization-host and redhat-virtualization-host is now available for Red Hat Virtualization 4 for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-23521: A flaw was found in Git, a distributed revision control system. When parsing gitattributes, a mechanism to allow defining attributes for paths, multiple integer overflows can occur when there is a huge number of path patterns, attributes for a single pattern, ...

Red Hat Security Advisory 2023-1666-01

Red Hat Security Advisory 2023-1666-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. Issues addressed include a use-after-free vulnerability.

Red Hat Security Advisory 2023-1660-01

Red Hat Security Advisory 2023-1660-01 - This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel.

RHSA-2023:1659: Red Hat Security Advisory: kpatch-patch security update

An update for kpatch-patch is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-4378: A stack overflow flaw was found in the Linux kernel's SYSCTL subsystem in how a user changes certain kernel parameters and variables. This flaw allows a local user to crash or potentially escalate their privileges on the system. * CVE-2023-0266: A use-after-free flaw was found in snd_ctl_elem_read in sound/core/control.c in Advanced Linux So...

RHSA-2023:1660: Red Hat Security Advisory: kpatch-patch security update

An update for kpatch-patch is now available for Red Hat Enterprise Linux 8.6 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2023-0266: A use-after-free flaw was found in snd_ctl_elem_read in sound/core/control.c in Advanced Linux Sound Architecture (ALSA) subsystem in the Linux kernel. In this flaw a normal privileged, local attacker may impact the system due to a locking issue in the compat path, leading to a kernel information leak problem. * CVE...

Red Hat Security Advisory 2023-1556-01

Red Hat Security Advisory 2023-1556-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Issues addressed include a use-after-free vulnerability.

Red Hat Security Advisory 2023-1554-01

Red Hat Security Advisory 2023-1554-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system.

RHSA-2023:1559: Red Hat Security Advisory: kernel security and bug fix update

An update for kernel is now available for Red Hat Enterprise Linux 8.2 Advanced Update Support, Red Hat Enterprise Linux 8.2 Telecommunications Update Service, and Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-3564: A use-after-free flaw was found in the Linux kernel’s L2CAP bluetooth functionality in how a user triggers a race condition by two malicious flows in the L2CAP bluetooth packets. This flaw al...

Ubuntu Security Notice USN-5981-1

Ubuntu Security Notice 5981-1 - It was discovered that the System V IPC implementation in the Linux kernel did not properly handle large shared memory counts. A local attacker could use this to cause a denial of service. It was discovered that a use-after-free vulnerability existed in the SGI GRU driver in the Linux kernel. A local attacker could possibly use this to cause a denial of service or possibly execute arbitrary code.

Ubuntu Security Notice USN-5982-1

Ubuntu Security Notice 5982-1 - It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs. It was discovered that a use-after-free vulnerability existed in the SGI GRU driver in the Linux kernel. A local attacker could possibly use this to cause a denial of service or possibly execute arbitrary code.

Red Hat Security Advisory 2023-1203-01

Red Hat Security Advisory 2023-1203-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Issues addressed include denial of service, integer overflow, and use-after-free vulnerabilities.

RHSA-2023:1203: Red Hat Security Advisory: kernel-rt security and bug fix update

An update for kernel-rt is now available for Red Hat Enterprise Linux 9.0 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original. Related CVEs: * CVE-2022-3564: A use-after-free flaw was found in the Linux kernel’s L2CAP bluetooth functionality in how a user triggers a race condition by two malicious flows in the L2CAP bluetooth packets. This flaw allows a local or bluetooth connection user to crash the system or potentially escalate privileges. * CVE-2022-4269: A flaw was fou...

Ubuntu Security Notice USN-5940-1

Ubuntu Security Notice 5940-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that the NVMe driver in the Linux kernel did not properly handle reset events in some situations. A local attacker could use this to cause a denial of service.

Ubuntu Security Notice USN-5934-1

Ubuntu Security Notice 5934-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that the NVMe driver in the Linux kernel did not properly handle reset events in some situations. A local attacker could use this to cause a denial of service.

Ubuntu Security Notice USN-5927-1

Ubuntu Security Notice 5927-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that the System V IPC implementation in the Linux kernel did not properly handle large shared memory counts. A local attacker could use this to cause a denial of service.

Ubuntu Security Notice USN-5924-1

Ubuntu Security Notice 5924-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. It was discovered that the System V IPC implementation in the Linux kernel did not properly handle large shared memory counts. A local attacker could use this to cause a denial of service.

Ubuntu Security Notice USN-5917-1

Ubuntu Security Notice 5917-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Kyle Zeng discovered that the sysctl implementation in the Linux kernel contained a stack-based buffer overflow. A local attacker could use this to cause a denial of service or execute arbitrary code.

Ubuntu Security Notice USN-5915-1

Ubuntu Security Notice 5915-1 - It was discovered that the Upper Level Protocol subsystem in the Linux kernel did not properly handle sockets entering the LISTEN state in certain protocols, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. Davide Ornaghi discovered that the netfilter subsystem in the Linux kernel did not properly handle VLAN headers in some situations. A local attacker could use this to cause a denial of service or possibly execute arbitrary code.