MGASA-2014-0061
Dashboard / Vulnerabilities / MGASA-2014-0061
Summary: Updated kernel-linus package fixes security vulnerability
Details: This kernel update provides an update to 3.12.9 and fixes the following critical security issue: Pageexec reported a bug in the Linux kernel's recvmmsg syscall when called from code using the x32 ABI. An unprivileged local user could exploit this flaw to cause a denial of service (system crash) or gain administrator privileges (CVE-2014-0038). Other changes are in the referenced changelog.
References: https://advisories.mageia.org/MGASA-2014-0061.html, https://bugs.mageia.org/show_bug.cgi?id=12523, https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.12.9
Affected packages
Package
Name: kernel-linus
Purl: pkg:rpm/mageia/kernel-linus?arch=source&distro=mageia-4
Affected ranges
Type: ECOSYSTEM
Events:
