MGASA-2014-0039
Dashboard / Vulnerabilities / MGASA-2014-0039
Summary: Updated kernel package fixes a critical security issue
Details: This kernel update provides an update to 3.12.9 and fixes the following critical security issue: Pageexec reported a bug in the Linux kernel's recvmmsg syscall when called from code using the x32 ABI. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrator privileges (CVE-2014-0038) It also fixes an issue where some laptops are forced to use vesa driver & No ACPI (mga#6077) For other changes, see the referenced changelog.
References: https://advisories.mageia.org/MGASA-2014-0039.html, https://bugs.mageia.org/show_bug.cgi?id=6077, https://bugs.mageia.org/show_bug.cgi?id=12522, https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.12.9
Affected packages
Package
Name: kernel
Purl: pkg:rpm/mageia/kernel?arch=source&distro=mageia-4
Affected ranges
Type: ECOSYSTEM
Events:
