[USN-2737-1] Linux kernel (Vivid HWE) vulnerability

Severity Medium
Affected Packages 8
CVEs 1

The system could be made to crash or run programs as an administrator.

It was discovered that an integer overflow error existed in the SCSI
generic (sg) driver in the Linux kernel. A local attacker with write
permission to a SCSI generic device could use this to cause a denial of
service (system crash) or potentially escalate their privileges.

Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-image-extra-3.19.0-28-generic?distro=trusty ubuntu linux-image-extra-3.19.0-28-generic < 3.19.0-28.30~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-3.19.0-28-powerpc64-smp?distro=trusty ubuntu linux-image-3.19.0-28-powerpc64-smp < 3.19.0-28.30~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-3.19.0-28-powerpc64-emb?distro=trusty ubuntu linux-image-3.19.0-28-powerpc64-emb < 3.19.0-28.30~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-3.19.0-28-powerpc-smp?distro=trusty ubuntu linux-image-3.19.0-28-powerpc-smp < 3.19.0-28.30~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-3.19.0-28-powerpc-e500mc?distro=trusty ubuntu linux-image-3.19.0-28-powerpc-e500mc < 3.19.0-28.30~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-3.19.0-28-lowlatency?distro=trusty ubuntu linux-image-3.19.0-28-lowlatency < 3.19.0-28.30~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-3.19.0-28-generic?distro=trusty ubuntu linux-image-3.19.0-28-generic < 3.19.0-28.30~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-3.19.0-28-generic-lpae?distro=trusty ubuntu linux-image-3.19.0-28-generic-lpae < 3.19.0-28.30~14.04.1 trusty
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...