USN-3488-1: Linux kernel (Azure) vulnerability
It was discovered that the KVM subsystem in the Linux kernel did not properly keep track of nested levels in guest page tables. A local attacker in a guest VM could use this to cause a denial of service (host OS crash) or possibly execute arbitrary code in the host OS.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability in USN-3488-1?
The vulnerability is a flaw in the KVM subsystem in the Linux kernel that allows a local attacker in a guest VM to cause a denial of service or execute arbitrary code in the host OS.
How does the vulnerability in USN-3488-1 affect the system?
The vulnerability can result in a crash of the host OS or allow an attacker to execute arbitrary code.
Which versions of Ubuntu are affected by the vulnerability in USN-3488-1?
The vulnerability affects Ubuntu 16.04 with Linux kernel version 4.11.0-1015-azure.
What is the remedy for the vulnerability in USN-3488-1?
To fix the vulnerability, update the linux-image-4.11.0-1015-azure package to version 4.11.0-1015.15 or later.
Where can I find more information about USN-3488-1?
More information about USN-3488-1 can be found on the Ubuntu Security Notices website.