USN-3016-2: Linux kernel (Raspberry Pi 2) vulnerabilities
Jesse Hertz and Tim Newsham discovered that the Linux netfilter implementation did not correctly perform validation when handling 32 bit compatibility IPTSOSETREPLACE events on 64 bit platforms. A local unprivileged attacker could use this to cause a denial of service (system crash) or execute arbitrary code with administrative privileges. (CVE-2016-4997) Kangjie Lu discovered an information leak in the core USB implementation in the Linux kernel. A local attacker could use this to obtain potentially sensitive information from kernel memory. (CVE-2016-4482) Kangjie Lu discovered an information leak in the timer handling implementation in the Advanced Linux Sound Architecture (ALSA) subsystem of the Linux kernel. A local attacker could use this to obtain potentially sensitive information from kernel memory. (CVE-2016-4569, CVE-2016-4578) Kangjie Lu discovered an information leak in the X.25 Call Request handling in the Linux kernel. A local attacker could use this to obtain potentially sensitive information from kernel memory. (CVE-2016-4580) It was discovered that an information leak exists in the Rock Ridge implementation in the Linux kernel. A local attacker who is able to mount a malicious iso9660 file system image could exploit this flaw to obtain potentially sensitive information from kernel memory. (CVE-2016-4913) Baozeng Ding discovered that the Transparent Inter-process Communication (TIPC) implementation in the Linux kernel did not verify socket existence before use in some situations. A local attacker could use this to cause a denial of service (system crash). (CVE-2016-4951) Jesse Hertz and Tim Newsham discovered that the Linux netfilter implementation did not correctly perform validation when handling IPTSOSETREPLACE events. A local unprivileged attacker could use this to cause a denial of service (system crash) or obtain potentially sensitive information from kernel memory. (CVE-2016-4998)
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID for this advisory?
The vulnerability ID for this advisory is USN-3016-2.
What software is affected by this vulnerability?
The Linux kernel version 4.4.0-1016.22 on Raspberry Pi 2 running Ubuntu 16.04 is affected by this vulnerability.
What is the risk of this vulnerability?
This vulnerability can be exploited by a local unprivileged attacker to cause a denial of service (system crash) or execute arbitrary code.
How can I fix this vulnerability?
To fix this vulnerability, upgrade to Linux kernel version 4.4.0-1016.22 or higher.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability on the Ubuntu Security website using the following links: [CVE-2016-4482](https://ubuntu.com/security/CVE-2016-4482), [CVE-2016-4569](https://ubuntu.com/security/CVE-2016-4569), [CVE-2016-4578](https://ubuntu.com/security/CVE-2016-4578).