USN-2511-1: Linux kernel vulnerabilities
A race condition was discovered in the Linux kernel's key ring. A local user could cause a denial of service (memory corruption or panic) or possibly have unspecified impact via the keyctl commands. (CVE-2014-9529) A memory leak was discovered in the ISO 9660 CDROM file system when parsing rock ridge ER records. A local user could exploit this flaw to obtain sensitive information from kernel memory via a crafted iso9660 image. (CVE-2014-9584)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-2511-1?
The USN-2511-1 vulnerability has a high severity rating due to the potential for denial of service and memory corruption.
How do I fix USN-2511-1?
To fix USN-2511-1, update to the linux-image package version 2.6.32-73.140 or higher.
What systems are affected by USN-2511-1?
USN-2511-1 affects Ubuntu 10.04 systems running the linux-image versions specified in the advisory.
What are the potential impacts of USN-2511-1?
The potential impacts of USN-2511-1 include system crashes, memory leaks, and local denial of service attacks.
Is there a workaround for USN-2511-1?
There are no recommended workarounds for USN-2511-1; the primary mitigation is to apply the update.