USN-3419-1: Linux kernel vulnerabilities
It was discovered that a buffer overflow existed in the Bluetooth stack of the Linux kernel when handling L2CAP configuration responses. A physically proximate attacker could use this to cause a denial of service (system crash). (CVE-2017-1000251) It was discovered that a buffer overflow existed in the Broadcom FullMAC WLAN driver in the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2017-7541)
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Linux kernel vulnerability?
The vulnerability ID for this Linux kernel vulnerability is CVE-2017-1000251.
How does the vulnerability in the Bluetooth stack of the Linux kernel impact the system?
The vulnerability in the Bluetooth stack of the Linux kernel can cause a denial of service (system crash).
What is the remedy for the Linux kernel vulnerability?
The remedy for the Linux kernel vulnerability is to update the linux-image-generic package to version 4.10.0.35.35 or higher.
Is Ubuntu 17.04 affected by this Linux kernel vulnerability?
Yes, Ubuntu 17.04 is affected by this Linux kernel vulnerability.
Where can I find more information about this Linux kernel vulnerability?
You can find more information about this Linux kernel vulnerability on the Ubuntu security website.