USN-3247-1: AppArmor vulnerability
Published Mar 28, 2017
·Updated
Stéphane Graber discovered that AppArmor incorrectly unloaded some profiles when restarted or upgraded, contrary to expected behavior.
Affected Software
8 affected componentsFixes available
All of the following
ubuntu/apparmor<2.10.95-4ubuntu5.3
2.10.95-4ubuntu5.3
Ubuntu Ubuntu=16.10
All of the following
ubuntu/apparmor<2.10.95-0ubuntu2.6
2.10.95-0ubuntu2.6
Ubuntu Ubuntu=16.04
All of the following
ubuntu/apparmor<2.10.95-0ubuntu2.6~14.04.1
2.10.95-0ubuntu2.6~14.04.1
Ubuntu Ubuntu=14.04
All of the following
ubuntu/apparmor<2.7.102-0ubuntu3.11
2.7.102-0ubuntu3.11
Ubuntu Ubuntu=12.04
Event History
Mar 28, 2017
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-3247-1?
USN-3247-1 is considered a high severity vulnerability due to improper handling of AppArmor profiles.
2
How do I fix USN-3247-1?
To fix USN-3247-1, update the AppArmor package to the recommended version for your Ubuntu release.
3
Which versions of Ubuntu are affected by USN-3247-1?
USN-3247-1 affects Ubuntu versions 12.04, 14.04, 16.04, and 16.10 with specific AppArmor package versions.
4
What vulnerabilities are addressed in USN-3247-1?
USN-3247-1 addresses the vulnerability related to incorrect unloading of AppArmor profiles during restart or upgrade.
5
Who discovered the vulnerability related to USN-3247-1?
The vulnerability associated with USN-3247-1 was discovered by Stéphane Graber.