USN-3313-1: Linux kernel vulnerability
Published Jun 6, 2017
·Updated
It was discovered that a buffer overflow existed in the trace subsystem in the Linux kernel. A privileged local attacker could use this to execute arbitrary code.
Affected Software
28 affected componentsFixes available
All of the following
ubuntu/linux-image-4.8.0-54-generic<4.8.0-54.57
4.8.0-54.57
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-powerpc-e500mc<4.8.0.54.66
4.8.0.54.66
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-4.8.0-54-powerpc-smp<4.8.0-54.57
4.8.0-54.57
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-4.8.0-54-powerpc-e500mc<4.8.0-54.57
4.8.0-54.57
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-powerpc-smp<4.8.0.54.66
4.8.0.54.66
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-generic<4.8.0.54.66
4.8.0.54.66
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-4.8.0-54-lowlatency<4.8.0-54.57
4.8.0-54.57
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-4.8.0-54-generic-lpae<4.8.0-54.57
4.8.0-54.57
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-lowlatency<4.8.0.54.66
4.8.0.54.66
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-4.8.0-1038-raspi2<4.8.0-1038.41
4.8.0-1038.41
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-generic-lpae<4.8.0.54.66
4.8.0.54.66
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-4.8.0-54-powerpc64-emb<4.8.0-54.57
4.8.0-54.57
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-powerpc64-emb<4.8.0.54.66
4.8.0.54.66
Ubuntu Ubuntu=16.10
All of the following
ubuntu/linux-image-raspi2<4.8.0.1038.42
4.8.0.1038.42
Ubuntu Ubuntu=16.10
Event History
Jun 6, 2017
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the vulnerability ID for this Linux kernel vulnerability?
The vulnerability ID for this Linux kernel vulnerability is USN-3313-1.
2
What is the severity of USN-3313-1?
The severity of USN-3313-1 is not specified in the provided information. Please refer to the provided references for more details.
3
How can a privileged local attacker exploit USN-3313-1?
A privileged local attacker can exploit USN-3313-1 by using a buffer overflow in the trace subsystem to execute arbitrary code.
4
Which versions of Ubuntu are affected by USN-3313-1?
Ubuntu 16.10 is affected by USN-3313-1.
5
How can I fix USN-3313-1?
To fix USN-3313-1, update the Linux kernel to version 4.8.0-54.57 or later. Refer to the provided references for more information.