USN-3159-2: Linux kernel (OMAP4) vulnerability
Published Dec 20, 2016
·Updated
It was discovered that a race condition existed in the procfs environread function in the Linux kernel, leading to an integer underflow. A local attacker could use this to expose sensitive information (kernel memory).
Affected Software
4 affected componentsFixes available
All of the following
ubuntu/linux-image-3.2.0-1497-omap4<3.2.0-1497.124
3.2.0-1497.124
Ubuntu Ubuntu=12.04
All of the following
ubuntu/linux-image-omap4<3.2.0.1497.92
3.2.0.1497.92
Ubuntu Ubuntu=12.04
Event History
Dec 20, 2016
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is USN-3159-2.
2
What is the severity of USN-3159-2?
The severity of USN-3159-2 is not specified in the information provided.
3
How does the vulnerability in the Linux kernel affect OMAP4?
The vulnerability in the Linux kernel affects OMAP4 by exposing sensitive information (kernel memory) through a race condition and integer underflow in the procfs environ_read function.
4
Which versions of Ubuntu are affected by USN-3159-2?
Ubuntu 12.04 with Linux kernel versions up to and including 3.2.0-1497.124 and 3.2.0.1497.92 are affected by USN-3159-2.
5
How can I fix USN-3159-2?
To fix USN-3159-2, update to Ubuntu kernel version 3.2.0-1497.124 or 3.2.0.1497.92 depending on the specific package.