USN-2751-1
Dashboard / Vulnerabilities / USN-2751-1
USN-2751-1
Summary: linux-lts-vivid vulnerabilities
Details: Benjamin Randazzo discovered an information leak in the md (multiple device) driver when the bitmap_info.file is disabled. A local privileged attacker could use this to obtain sensitive information from the kernel. (CVE-2015-5697) Marc-André Lureau discovered that the vhost driver did not properly release the userspace provided log file descriptor. A privileged attacker could use this to cause a denial of service (resource exhaustion). (CVE-2015-6252)
References: https://ubuntu.com/security/notices/USN-2751-1, https://ubuntu.com/security/CVE-2015-5697, https://ubuntu.com/security/CVE-2015-6252
Affected packages
Package
Name: linux-lts-vivid
Purl: pkg:deb/ubuntu/[email protected]~14.04.1?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
