USN-2748-1
Dashboard / Vulnerabilities / USN-2748-1
USN-2748-1
Summary: linux vulnerabilities
Details: Benjamin Randazzo discovered an information leak in the md (multiple device) driver when the bitmap_info.file is disabled. A local privileged attacker could use this to obtain sensitive information from the kernel. (CVE-2015-5697) Marc-André Lureau discovered that the vhost driver did not properly release the userspace provided log file descriptor. A privileged attacker could use this to cause a denial of service (resource exhaustion). (CVE-2015-6252)
References: https://ubuntu.com/security/notices/USN-2748-1, https://ubuntu.com/security/CVE-2015-5697, https://ubuntu.com/security/CVE-2015-6252
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
