[USN-2587-1] Linux kernel (Trusty HWE) vulnerabilities
Severity
Medium
CVEs
2
Several security issues were fixed in the kernel.
A stack overflow was discovered in the the microcode loader for the intel
x86 platform. A local attacker could exploit this flaw to cause a denial of
service (kernel crash) or to potentially execute code with kernel
privileges. (CVE-2015-2666)
It was discovered that the Linux kernel's IPv6 networking stack has a flaw
that allows using route advertisement (RA) messages to set the 'hop_limit'
to values that are too low. An unprivileged attacker on a local network
could exploit this flaw to cause a denial of service (IPv6 messages
dropped). (CVE-2015-2922)
- ID
- USN-2587-1
- Severity
- medium
- Severity from
- CVE-2015-2666
- URL
- https://ubuntu.com/security/notices/USN-2587-1
- Published
-
2015-04-30T08:12:09
(9 years ago) - Modified
-
2015-04-30T08:12:09
(9 years ago) - Other Advisories
-
- DSA-3237-1
- ELSA-2015-1221
- ELSA-2015-1534
- ELSA-2015-3048
- ELSA-2015-3049
- ELSA-2015-3050
- FEDORA-2015-10678
- FEDORA-2015-12917
- FEDORA-2015-13391
- FEDORA-2015-4457
- FEDORA-2015-5024
- FEDORA-2015-6100
- FEDORA-2015-6294
- FEDORA-2015-6320
- FEDORA-2015-7736
- FEDORA-2015-8518
- FEDORA-2015-9127
- FEDORA-2015-9704
- RHSA-2015:1221
- RHSA-2015:1534
- RHSA-2015:1565
- SUSE-SU-2015:0581-1
- SUSE-SU-2015:0736-1
- SUSE-SU-2015:1071-1
- SUSE-SU-2015:1174-1
- SUSE-SU-2015:1224-1
- SUSE-SU-2015:1376-1
- SUSE-SU-2015:1478-1
- USN-2585-1
- USN-2586-1
- USN-2588-1
- USN-2589-1
- USN-2590-1
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |