USN-1815-1: Linux kernel vulnerabilities

Publication date

2 May 2013

Overview

Several security issues were fixed in the kernel.

Releases


Packages

Details

Andy Lutomirski discover an error in the Linux kernel's credential handling
on unix sockets. A local user could exploit this flaw to gain
administrative privileges. (CVE-2013-1979)

Andy Lutomirski discovered a privilege escalation in the Linux kernel's
user namespaces. A local user could exploit the flaw to gain administrative
privileges. (CVE-2013-1959)

Andy Lutomirski discover an error in the Linux kernel's credential handling
on unix sockets. A local user could exploit this flaw to gain
administrative privileges. (CVE-2013-1979)

Andy Lutomirski discovered a privilege escalation in the Linux kernel's
user namespaces. A local user could exploit the flaw to gain administrative
privileges. (CVE-2013-1959)

Update instructions

After a standard system update you need to reboot your computer to make all the necessary changes.

Learn more about how to get the fixes.

The problem can be corrected by updating your system to the following package versions:

Ubuntu Release Package Version
13.04 raring linux-image-3.8.0-19-generic –  3.8.0-19.30

Reduce your security exposure

Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.


Have additional questions?

Talk to a member of the team ›