First published: Mon Feb 06 2012(Updated: )
A flaw was discovered in the XFS filesystem. If a local user mounts a specially crafted XFS image it could potential execute arbitrary code on the system. (CVE-2012-0038) Chen Haogang discovered an integer overflow that could result in memory corruption. A local unprivileged user could use this to crash the system. (CVE-2012-0044) A flaw was found in the linux kernels IPv4 IGMP query processing. A remote attacker could exploit this to cause a denial of service. (CVE-2012-0207)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/linux-image-2.6.38-1209-omap4 | <2.6.38-1209.21 | 2.6.38-1209.21 |
Ubuntu gir1.2-packagekitglib-1.0 | =11.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
USN-1356-1 is considered a high severity vulnerability due to the potential for arbitrary code execution.
To fix USN-1356-1, update to the latest patched version of the affected package, which is linux-image-2.6.38-1209-omap4.
USN-1356-1 affects Ubuntu 11.04 with the specified kernel version.
USN-1356-1 allows local unprivileged users to mount crafted XFS images, potentially leading to memory corruption.
The vulnerability in USN-1356-1 was discovered by Chen Haogang.