USN-1459-1: Linux kernel (OMAP4) vulnerabilities
A flaw was found in the Linux kernel's KVM (Kernel Virtual Machine) virtual cpu setup. An unprivileged local user could exploit this flaw to crash the system leading to a denial of service. (CVE-2012-1601) Steve Grubb reported a flaw with Linux fscaps (file system base capabilities) when used to increase the permissions of a process. For application on which fscaps are in use a local attacker can disable address space randomization to make attacking the process with raised privileges easier. (CVE-2012-2123) A flaw was found in how the Linux kernel passed the replacement session keyring to a child process. An unprivileged local user could exploit this flaw to cause a denial of service (panic). (CVE-2012-2745)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-1459-1?
USN-1459-1 has been classified as a denial of service vulnerability that can be exploited to crash the system.
How do I fix USN-1459-1?
To fix USN-1459-1, update your system to the latest version of linux-image-3.0.0-1210-omap4 or apply the recommended patches.
Who is affected by USN-1459-1?
USN-1459-1 affects unprivileged local users on Ubuntu 11.10 using the specific kernel version mentioned.
What component of the system is vulnerable in USN-1459-1?
The vulnerability in USN-1459-1 is found in the Kernel Virtual Machine (KVM) component of the Linux kernel.
Is USN-1459-1 related to any other vulnerabilities?
Yes, USN-1459-1 is associated with CVE-2012-1601, which highlights a specific flaw within the Linux kernel.