UbuntuUpdates.org

Bugs fixes in "linux-gke"

Origin Bug number Title Date fixed
CVE CVE-2017-9074 The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be associated with an invalid o 2017-06-12
CVE CVE-2017-9075 The sctp_v6_create_accept_sk function in net/sctp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause 2017-06-12
CVE CVE-2017-9242 The __ip6_append_data function in net/ipv6/ip6_output.c in the Linux kernel through 4.11.3 is too late in checking whether an overwrite of an skb dat 2017-06-12
Launchpad 1672819 exec'ing a setuid binary from a threaded program sometimes fails to setuid 2017-06-12
CVE CVE-2017-8890 The inet_csk_clone_lock function in net/ipv4/inet_connection_sock.c in the Linux kernel through 4.10.15 allows attackers to cause a denial of service 2017-06-09
CVE CVE-2017-9077 The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause 2017-06-09
CVE CVE-2017-9076 The dccp_v6_request_recv_sock function in net/dccp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to caus 2017-06-09
CVE CVE-2017-9074 The IPv6 fragmentation implementation in the Linux kernel through 4.11.1 does not consider that the nexthdr field may be associated with an invalid o 2017-06-09
CVE CVE-2017-9075 The sctp_v6_create_accept_sk function in net/sctp/ipv6.c in the Linux kernel through 4.11.1 mishandles inheritance, which allows local users to cause 2017-06-09
CVE CVE-2017-9242 The __ip6_append_data function in net/ipv6/ip6_output.c in the Linux kernel through 4.11.3 is too late in checking whether an overwrite of an skb dat 2017-06-09
Launchpad 1672819 exec'ing a setuid binary from a threaded program sometimes fails to setuid 2017-06-09
CVE CVE-2017-0605 An elevation of privilege vulnerability in the kernel trace subsystem could enable a local malicious application to execute arbitrary code within the 2017-06-06
Launchpad 1688579 linux-aws/linux-gke incorrectly producing and using linux-*-tools-common/linux-*-cloud-tools-common 2017-06-06
Launchpad 1690183 linux-aws/linux-gke incorrectly producing an empty linux-*-source package-* 2017-06-06
CVE CVE-2017-0605 An elevation of privilege vulnerability in the kernel trace subsystem could enable a local malicious application to execute arbitrary code within the 2017-06-06
Launchpad 1688579 linux-aws/linux-gke incorrectly producing and using linux-*-tools-common/linux-*-cloud-tools-common 2017-06-06
Launchpad 1690183 linux-aws/linux-gke incorrectly producing an empty linux-*-source package-* 2017-06-06
CVE CVE-2017-0605 An elevation of privilege vulnerability in the kernel trace subsystem could enable a local malicious application to execute arbitrary code within the 2017-05-20
Launchpad 1688579 linux-aws/linux-gke incorrectly producing and using linux-*-tools-common/linux-*-cloud-tools-common 2017-05-20
Launchpad 1690183 linux-aws/linux-gke incorrectly producing an empty linux-*-source package-* 2017-05-20



About   -   Send Feedback to @ubuntu_updates