USN-1323-1: Linux kernel vulnerabilities
Peter Huewe discovered an information leak in the handling of reading security-related TPM data. A local, unprivileged user could read the results of a previous TPM command. (CVE-2011-1162) Clement Lecigne discovered a bug in the HFS filesystem. A local attacker could exploit this to cause a kernel oops. (CVE-2011-2203) A flaw was found in the b43 driver in the Linux kernel. An attacker could use this flaw to cause a denial of service if the system has an active wireless interface using the b43 driver. (CVE-2011-3359) A flaw was found in how the Linux kernel handles user-defined key types. An unprivileged local user could exploit this to crash the system. (CVE-2011-4110)
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-1323-1?
The severity is categorized as high due to information leak vulnerabilities that could be exploited by local attackers.
How do I fix USN-1323-1?
To resolve this issue, upgrade the affected packages to version 2.6.24-30.98 as specified in the advisory.
What types of systems are affected by USN-1323-1?
USN-1323-1 affects various Ubuntu 8.04 systems running specific versions of the Linux kernel.
Who discovered the vulnerabilities in USN-1323-1?
The vulnerabilities were discovered by Peter Huewe and Clement Lecigne.
What impact does USN-1323-1 have on system security?
The impact includes potential unauthorized access to sensitive TPM data by local unprivileged users.