USN-1313-1: Linux Kernel (Oneiric backport) vulnerability
Published Dec 19, 2011
·Updated
Nick Bowler discovered the kernel GHASH message digest algorithm incorrectly handled error conditions. A local attacker could exploit this to cause a kernel oops.
Affected Software
8 affected componentsFixes available
All of the following
ubuntu/linux-image-3.0.0-14-generic<3.0.0-14.23~lucid1
3.0.0-14.23~lucid1
Ubuntu Ubuntu=10.04
All of the following
ubuntu/linux-image-3.0.0-14-server<3.0.0-14.23~lucid1
3.0.0-14.23~lucid1
Ubuntu Ubuntu=10.04
All of the following
ubuntu/linux-image-3.0.0-14-generic-pae<3.0.0-14.23~lucid1
3.0.0-14.23~lucid1
Ubuntu Ubuntu=10.04
All of the following
ubuntu/linux-image-3.0.0-14-virtual<3.0.0-14.23~lucid1
3.0.0-14.23~lucid1
Ubuntu Ubuntu=10.04
Event History
Dec 19, 2011
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-1313-1?
USN-1313-1 has a severity level that may allow a local attacker to cause kernel instability.
2
How do I fix USN-1313-1?
To fix USN-1313-1, update your kernel package to version 3.0.0-14.23~lucid1 or later.
3
What are the affected systems for USN-1313-1?
The affected systems for USN-1313-1 include Ubuntu 10.04 with specific kernel package versions.
4
Who discovered the vulnerability in USN-1313-1?
The vulnerability in USN-1313-1 was discovered by Nick Bowler.
5
What could a successful exploit of USN-1313-1 lead to?
A successful exploit of USN-1313-1 could lead to a kernel oops, compromising system stability.