[USN-3334-1] Linux kernel (Xenial HWE) vulnerability

Severity High
Affected Packages 8
CVEs 1

The system could be made to run programs as an administrator.

USN-3328-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04
LTS. This update provides the corresponding updates for the Linux
Hardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for Ubuntu
14.04 LTS.

It was discovered that the stack guard page for processes in the Linux
kernel was not sufficiently large enough to prevent overlapping with the
heap. An attacker could leverage this with another vulnerability to execute
arbitrary code and gain administrative privileges

Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-image-extra-4.4.0-81-generic?distro=trusty ubuntu linux-image-extra-4.4.0-81-generic < 4.4.0-81.104~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-4.4.0-81-powerpc64-smp?distro=trusty ubuntu linux-image-4.4.0-81-powerpc64-smp < 4.4.0-81.104~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-4.4.0-81-powerpc64-emb?distro=trusty ubuntu linux-image-4.4.0-81-powerpc64-emb < 4.4.0-81.104~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-4.4.0-81-powerpc-smp?distro=trusty ubuntu linux-image-4.4.0-81-powerpc-smp < 4.4.0-81.104~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-4.4.0-81-powerpc-e500mc?distro=trusty ubuntu linux-image-4.4.0-81-powerpc-e500mc < 4.4.0-81.104~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-4.4.0-81-lowlatency?distro=trusty ubuntu linux-image-4.4.0-81-lowlatency < 4.4.0-81.104~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-4.4.0-81-generic?distro=trusty ubuntu linux-image-4.4.0-81-generic < 4.4.0-81.104~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-4.4.0-81-generic-lpae?distro=trusty ubuntu linux-image-4.4.0-81-generic-lpae < 4.4.0-81.104~14.04.1 trusty
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...