[USN-2444-1] Linux kernel (OMAP4) vulnerabilities
Several security issues were fixed in the kernel.
Rabin Vincent, Robert Swiecki, Russell King discovered that the ftrace
subsystem of the Linux kernel does not properly handle private syscall
numbers. A local user could exploit this flaw to cause a denial of service
(OOPS). (CVE-2014-7826)
Rabin Vincent, Robert Swiecki, Russell Kinglaw discovered a flaw in how the
perf subsystem of the Linux kernel handles private systecall numbers. A
local user could exploit this to cause a denial of service (OOPS) or bypass
ASLR protections via a crafted application. (CVE-2014-7825)
A null pointer dereference flaw was discovered in the the Linux kernel's
SCTP implementation when ASCONF is used. A remote attacker could exploit
this flaw to cause a denial of service (system crash) via a malformed INIT
chunk. (CVE-2014-7841)
A stack buffer overflow was discovered in the ioctl command handling for
the Technotrend/Hauppauge USB DEC devices driver. A local user could
exploit this flaw to cause a denial of service (system crash) or possibly
gain privileges. (CVE-2014-8884)
- ID
- USN-2444-1
- Severity
- high
- Severity from
- CVE-2014-7825
- URL
- https://ubuntu.com/security/notices/USN-2444-1
- Published
-
2014-12-12T07:38:02
(9 years ago) - Modified
-
2014-12-12T07:38:02
(9 years ago) - Other Advisories
-
- ALAS-2014-455
- DSA-3093-1
- ELSA-2015-0087
- ELSA-2015-0102
- ELSA-2015-0290
- ELSA-2015-0864
- ELSA-2015-3003
- ELSA-2015-3004
- ELSA-2015-3005
- ELSA-2015-3013
- ELSA-2015-3014
- ELSA-2015-3015
- FEDORA-2014-15159
- FEDORA-2014-15200
- FEDORA-2014-16632
- FEDORA-2014-17244
- FEDORA-2014-17283
- FEDORA-2015-0515
- FEDORA-2015-1672
- FEDORA-2015-3594
- FEDORA-2015-5024
- FEDORA-2015-6294
- FEDORA-2015-8518
- RHSA-2015:0087
- RHSA-2015:0102
- RHSA-2015:0290
- RHSA-2015:0864
- SUSE-SU-2015:0481-1
- SUSE-SU-2015:0529-1
- SUSE-SU-2015:0581-1
- SUSE-SU-2015:0652-1
- SUSE-SU-2015:0736-1
- SUSE-SU-2015:1174-1
- SUSE-SU-2015:1376-1
- USN-2441-1
- USN-2442-1
- USN-2443-1
- USN-2445-1
- USN-2446-1
- USN-2447-1
- USN-2448-1
- USN-2465-1
- USN-2466-1
- USN-2467-1
- USN-2468-1
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |