USN-1573-1: Linux kernel (EC2) vulnerabilities
Ben Hutchings reported a flaw in the Linux kernel with some network drivers that support TSO (TCP segment offload). A local or peer user could exploit this flaw to to cause a denial of service. (CVE-2012-3412) Jay Fenlason and Doug Ledford discovered a bug in the Linux kernel implementation of RDS sockets. A local unprivileged user could potentially use this flaw to read privileged information from the kernel. (CVE-2012-3430) A flaw was discovered in the madvise feature of the Linux kernel's memory subsystem. An unprivileged local use could exploit the flaw to cause a denial of service (crash the system). (CVE-2012-3511)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-1573-1?
The severity of USN-1573-1 is considered to be medium due to its potential to cause a denial of service.
How do I fix USN-1573-1?
To fix USN-1573-1, you need to update your system to the recommended kernel version 2.6.32-348.54.
Who is affected by USN-1573-1?
Users of Ubuntu 10.04 with the linux-image-2.6.32-348-ec2 package are affected by USN-1573-1.
What exploit does USN-1573-1 address?
USN-1573-1 addresses a flaw in the Linux kernel that allows local or peer users to cause a denial of service.
When was USN-1573-1 released?
USN-1573-1 was released on July 14, 2012.