USN-2203-1: Linux kernel vulnerability
Published May 6, 2014
·Updated
A flaw was discovered in the Linux kernel's pseudo tty (pty) device. An unprivileged user could exploit this flaw to cause a denial of service (system crash) or potentially gain administrator privileges.
Affected Software
4 affected componentsFixes available
All of the following
ubuntu/linux-image-3.11.0-20-generic-lpae<3.11.0-20.35
3.11.0-20.35
Ubuntu Ubuntu=13.10
All of the following
ubuntu/linux-image-3.11.0-20-generic<3.11.0-20.35
3.11.0-20.35
Ubuntu Ubuntu=13.10
Event History
May 6, 2014
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-2203-1?
The severity of USN-2203-1 is high due to the potential for denial of service or privilege escalation.
2
How do I fix USN-2203-1?
To fix USN-2203-1, upgrade the Linux kernel to version 3.11.0-20.35 on affected Ubuntu systems.
3
Who is affected by USN-2203-1?
USN-2203-1 affects unprivileged users on Ubuntu 13.10 using the vulnerable Linux kernel versions.
4
What type of vulnerability is USN-2203-1?
USN-2203-1 is a vulnerability in the Linux kernel's pseudo tty (pty) device affecting system stability and security.
5
Is USN-2203-1 exploitable remotely?
USN-2203-1 is not considered remotely exploitable as it requires local access by an unprivileged user.