USN-2794-1
Dashboard / Vulnerabilities / USN-2794-1
USN-2794-1
Summary: linux vulnerabilities
Details: It was discovered that in certain situations, a directory could be renamed outside of a bind mounted location. An attacker could use this to escape bind mount containment and gain access to sensitive information. (CVE-2015-2925) Moein Ghasemzadeh discovered that the USB WhiteHEAT serial driver contained hardcoded attributes about the USB devices. An attacker could construct a fake WhiteHEAT USB device that, when inserted, causes a denial of service (system crash). (CVE-2015-5257)
References: https://ubuntu.com/security/notices/USN-2794-1, https://ubuntu.com/security/CVE-2015-2925, https://ubuntu.com/security/CVE-2015-5257
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
