USN-1538-1: Linux kernel (Natty backport) vulnerabilities
Publication date
14 August 2012
Overview
Several security issues were fixed in the kernel.
Releases
Packages
- linux-lts-backport-natty - Linux kernel backport from Natty
Details
An error was discovered in the Linux kernel’s network TUN/TAP device
implementation. A local user with access to the TUN/TAP interface (which is
not available to unprivileged users until granted by a root user) could
exploit this flaw to crash the system or potential gain administrative
privileges. (CVE-2012-2136)
A flaw was found in the Linux kernel’s Reliable Datagram Sockets (RDS)
protocol implementation. A local, unprivileged user could use this flaw to
cause a denial of service. (CVE-2012-2372)
An error was discovered in the Linux kernel’s memory subsystem (hugetlb).
An unprivileged local user could exploit this flaw to cause a denial of
service (crash the system). (CVE-2012-2390)
An error was discovered in the Linux kernel’s network TUN/TAP device
implementation. A local user with access to the TUN/TAP interface (which is
not available to unprivileged users until granted by a root user) could
exploit this flaw to crash the system or potential gain administrative
privileges. (CVE-2012-2136)
A flaw was found in the Linux kernel’s Reliable Datagram Sockets (RDS)
protocol implementation. A local, unprivileged user could use this flaw to
cause a denial of service. (CVE-2012-2372)
An error was discovered in the Linux kernel’s memory subsystem (hugetlb).
An unprivileged local user could exploit this flaw to cause a denial of
service (crash the system). (CVE-2012-2390)
Update instructions
After a standard system update you need to reboot your computer to make all the necessary changes.
Learn more about how to get the fixes.The problem can be corrected by updating your system to the following package versions:
Ubuntu Release | Package Version | ||
---|---|---|---|
10.04 lucid | linux-image-2.6.38-15-generic – 2.6.38-15.65~lucid1 | ||
linux-image-2.6.38-15-virtual – 2.6.38-15.65~lucid1 | |||
linux-image-2.6.38-15-generic-pae – 2.6.38-15.65~lucid1 | |||
linux-image-2.6.38-15-server – 2.6.38-15.65~lucid1 |
Reduce your security exposure
Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.
Related notices
- USN-1598-1
- USN-1563-1
- USN-1558-1
- USN-1556-1
- USN-1555-1
- USN-1554-1
- USN-1539-1
- USN-1535-1
- USN-1534-1
- USN-1533-1
- USN-1598-1
- USN-1563-1
- USN-1558-1
- USN-1556-1
- USN-1555-1
- USN-1554-1
- USN-1539-1
- USN-1535-1
- USN-1534-1
- USN-1533-1
- USN-1532-1
- USN-1531-1
- USN-1530-1
- USN-1529-1
- USN-1515-1
- USN-1514-1
- USN-1508-1