USN-1322-1: Linux kernel vulnerability
Published Jan 9, 2012
·Updated
Nick Bowler discovered the kernel GHASH message digest algorithm incorrectly handled error conditions. A local attacker could exploit this to cause a kernel oops.
Affected Software
16 affected componentsFixes available
All of the following
ubuntu/linux-image-3.0.0-14-powerpc64-smp<3.0.0-14.23
3.0.0-14.23
Ubuntu Ubuntu=11.10
All of the following
ubuntu/linux-image-3.0.0-14-omap<3.0.0-14.23
3.0.0-14.23
Ubuntu Ubuntu=11.10
All of the following
ubuntu/linux-image-3.0.0-14-generic<3.0.0-14.23
3.0.0-14.23
Ubuntu Ubuntu=11.10
All of the following
ubuntu/linux-image-3.0.0-14-server<3.0.0-14.23
3.0.0-14.23
Ubuntu Ubuntu=11.10
All of the following
ubuntu/linux-image-3.0.0-14-powerpc-smp<3.0.0-14.23
3.0.0-14.23
Ubuntu Ubuntu=11.10
All of the following
ubuntu/linux-image-3.0.0-14-virtual<3.0.0-14.23
3.0.0-14.23
Ubuntu Ubuntu=11.10
All of the following
ubuntu/linux-image-3.0.0-14-powerpc<3.0.0-14.23
3.0.0-14.23
Ubuntu Ubuntu=11.10
All of the following
ubuntu/linux-image-3.0.0-14-generic-pae<3.0.0-14.23
3.0.0-14.23
Ubuntu Ubuntu=11.10
Event History
Jan 9, 2012
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-1322-1?
USN-1322-1 has a moderate severity, as it could lead to a kernel oops under certain circumstances.
2
How do I fix USN-1322-1?
To fix USN-1322-1, upgrade your Linux kernel to version 3.0.0-14.23 or later for Ubuntu 11.10.
3
What does the USN-1322-1 vulnerability affect?
USN-1322-1 affects several Linux kernel packages on Ubuntu 11.10, specifically various image packages.
4
Who discovered the USN-1322-1 vulnerability?
The vulnerability identified in USN-1322-1 was discovered by Nick Bowler.
5
Can USN-1322-1 be exploited remotely?
USN-1322-1 requires local access to exploit, as it is a local vulnerability affecting kernel operations.