USN-1606-1: Linux kernel vulnerabilities
A flaw was found in how the Linux kernel's KVM (Kernel-based Virtual Machine) subsystem handled MSI (Message Signaled Interrupts). A local unprivileged user could exploit this flaw to cause a denial of service or potentially elevate privileges. (CVE-2012-2137) A flaw was found in how the Linux kernel passed the replacement session keyring to a child process. An unprivileged local user could exploit this flaw to cause a denial of service (panic). (CVE-2012-2745)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-1606-1?
The severity of USN-1606-1 is categorized as important due to the potential for denial of service and privilege escalation.
How do I fix USN-1606-1?
You can fix USN-1606-1 by updating to the linux-image packages version 2.6.32-44.98 or later on Ubuntu 10.04.
Who is affected by USN-1606-1?
USN-1606-1 affects local unprivileged users on Ubuntu 10.04 running specific versions of the Linux kernel.
What vulnerabilities are addressed in USN-1606-1?
USN-1606-1 addresses a flaw in the Linux kernel's KVM subsystem related to Message Signaled Interrupts (CVE-2012-2137).
Is USN-1606-1 a critical vulnerability?
USN-1606-1 is not classified as critical but it has important security implications regarding system stability and unauthorized access.