USN-3405-1: Linux kernel vulnerabilities
It was discovered that a use-after-free vulnerability existed in the POSIX message queue implementation in the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2017-11176) Huang Weller discovered that the ext4 filesystem implementation in the Linux kernel mishandled a needs-flushing-before-commit list. A local attacker could use this to expose sensitive information. (CVE-2017-7495) It was discovered that a buffer overflow existed in the Broadcom FullMAC WLAN driver in the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2017-7541) It was discovered that the Linux kernel did not honor the UEFI secure boot mode when performing a kexec operation. A local attacker could use this to bypass secure boot restrictions. (CVE-2015-7837)
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2017-11176?
The severity of CVE-2017-11176 is high.
How can a local attacker exploit CVE-2017-11176?
A local attacker can exploit CVE-2017-11176 by using a use-after-free vulnerability in the POSIX message queue implementation in the Linux kernel to cause a denial of service or possibly execute arbitrary code.
How do I fix the vulnerability in Ubuntu 16.04 with linux-image-4.4.0-1028-gke?
To fix the vulnerability in Ubuntu 16.04 with linux-image-4.4.0-1028-gke, update the package to version 4.4.0-1028.28 or later.
Where can I find more information about CVE-2015-7837?
You can find more information about CVE-2015-7837 at https://ubuntu.com/security/CVE-2015-7837.
What is the Common Weakness Enumeration (CWE) number for this vulnerability?
The Common Weakness Enumeration (CWE) number for this vulnerability is CWE-119 and CWE-416.