USN-2588-1
Dashboard / Vulnerabilities / USN-2588-1
USN-2588-1
Summary: linux vulnerabilities
Details: A stack overflow was discovered in the the microcode loader for the intel x86 platform. A local attacker could exploit this flaw to cause a denial of service (kernel crash) or to potentially execute code with kernel privileges. (CVE-2015-2666) It was discovered that the Linux kernel's IPv6 networking stack has a flaw that allows using route advertisement (RA) messages to set the 'hop_limit' to values that are too low. An unprivileged attacker on a local network could exploit this flaw to cause a denial of service (IPv6 messages dropped). (CVE-2015-2922)
References: https://ubuntu.com/security/notices/USN-2588-1, https://ubuntu.com/security/CVE-2015-2666, https://ubuntu.com/security/CVE-2015-2922
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
