USN-2647-1: Linux kernel vulnerability
Published Jun 15, 2015
·Updated
Philip Pettersson discovered a privilege escalation when using overlayfs mounts inside of user namespaces. A local user could exploit this flaw to gain administrative privileges on the system.
Affected Software
14 affected componentsFixes available
All of the following
ubuntu/linux-image-3.19.0-21-powerpc-e500mc<3.19.0-21.21
3.19.0-21.21
Ubuntu Ubuntu=15.04
All of the following
ubuntu/linux-image-3.19.0-21-powerpc-smp<3.19.0-21.21
3.19.0-21.21
Ubuntu Ubuntu=15.04
All of the following
ubuntu/linux-image-3.19.0-21-powerpc64-smp<3.19.0-21.21
3.19.0-21.21
Ubuntu Ubuntu=15.04
All of the following
ubuntu/linux-image-3.19.0-21-powerpc64-emb<3.19.0-21.21
3.19.0-21.21
Ubuntu Ubuntu=15.04
All of the following
ubuntu/linux-image-3.19.0-21-lowlatency<3.19.0-21.21
3.19.0-21.21
Ubuntu Ubuntu=15.04
All of the following
ubuntu/linux-image-3.19.0-21-generic<3.19.0-21.21
3.19.0-21.21
Ubuntu Ubuntu=15.04
All of the following
ubuntu/linux-image-3.19.0-21-generic-lpae<3.19.0-21.21
3.19.0-21.21
Ubuntu Ubuntu=15.04
Event History
Jun 15, 2015
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-2647-1?
USN-2647-1 is a privilege escalation vulnerability that can allow local users to gain administrative privileges.
2
How do I fix USN-2647-1?
To mitigate USN-2647-1, you should upgrade to the linux-image version 3.19.0-21.21 in Ubuntu 15.04.
3
Which Ubuntu versions are affected by USN-2647-1?
USN-2647-1 affects Ubuntu version 15.04 with specific linux-image packages.
4
Who discovered USN-2647-1?
The vulnerability identified in USN-2647-1 was discovered by Philip Pettersson.
5
Can USN-2647-1 be exploited remotely?
No, USN-2647-1 is a local privilege escalation vulnerability requiring local user access to exploit.