USN-3324-1: Linux kernel vulnerability
It was discovered that the stack guard page for processes in the Linux kernel was not sufficiently large enough to prevent overlapping with the heap. An attacker could leverage this with another vulnerability to execute arbitrary code and gain administrative privileges
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Linux kernel vulnerability?
The vulnerability ID for this Linux kernel vulnerability is USN-3324-1.
What is the description of the Linux kernel vulnerability?
The Linux kernel vulnerability allows an attacker to execute arbitrary code and gain administrative privileges by leveraging the insufficiently large stack guard page for processes.
Is there a fix available for this Linux kernel vulnerability?
Yes, there is a fix available for this Linux kernel vulnerability. Update to version 4.10.0-24.28 of the Linux kernel package or a later version to mitigate the vulnerability.
What software is affected by this Linux kernel vulnerability?
Ubuntu version 17.04 is affected by this Linux kernel vulnerability.
Where can I find more information about this Linux kernel vulnerability?
You can find more information about this Linux kernel vulnerability at the following references: [CVE-2017-1000364](https://ubuntu.com/security/CVE-2017-1000364), [USN-3335-2](https://ubuntu.com/security/notices/USN-3335-2), [USN-3331-1](https://ubuntu.com/security/notices/USN-3331-1).