USN-2178-1: Linux kernel vulnerabilities
A flaw was discovered in the Kernel Virtual Machine (KVM) subsystem of the Linux kernel. A guest OS user could exploit this flaw to execute arbitrary code on the host OS. (CVE-2014-0049) Al Viro discovered an error in how CIFS in the Linux kernel handles uncached write operations. An unprivileged local user could exploit this flaw to cause a denial of service (system crash), obtain sensitive information from kernel memory, or possibly gain privileges. (CVE-2014-0069)
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability USN-2178-1 about?
USN-2178-1 addresses a flaw in the Kernel Virtual Machine (KVM) subsystem of the Linux kernel that allows a guest OS user to execute arbitrary code on the host OS.
What is the severity of vulnerability USN-2178-1?
The severity of vulnerability USN-2178-1 is critical due to the potential for remote code execution on the host system.
How do I fix vulnerability USN-2178-1?
To fix vulnerability USN-2178-1, you should update to the latest kernel version 3.5.0-49.73 or higher if you are using Ubuntu 12.10.
What versions of Ubuntu are affected by USN-2178-1?
Ubuntu 12.10 is the affected version for the vulnerability USN-2178-1.
What packages are affected by the USN-2178-1 vulnerability?
The packages affected by vulnerability USN-2178-1 include linux-image-3.5.0-49-highbank, linux-image-3.5.0-49-generic, and several others within the same version range.