USN-2969-1

    Dashboard / Vulnerabilities / USN-2969-1

    USN-2969-1

    Published: 9 May 2016Last Modified: 10 Feb 2026

    Summary: linux-lts-utopic vulnerabilities

    Details: Ralf Spenneberg discovered that the Aiptek Tablet USB device driver in the Linux kernel did not properly validate the endpoints reported by the device. An attacker with physical access could cause a denial of service (system crash). (CVE-2015-7515) Ben Hawkes discovered that the Linux kernel's AIO interface allowed single writes greater than 2GB, which could cause an integer overflow when writing to certain filesystems, socket or device types. A local attacker could this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2015-8830) Zach Riggle discovered that the Linux kernel's list poison feature did not take into account the mmap_min_addr value. A local attacker could use this to bypass the kernel's poison-pointer protection mechanism while attempting to exploit an existing kernel vulnerability. (CVE-2016-0821) Ralf Spenneberg discovered that the USB sound subsystem in the Linux kernel did not properly validate USB device descriptors. An attacker with physical access could use this to cause a denial of service (system crash). (CVE-2016-2184) Ralf Spenneberg discovered that the ATI Wonder Remote II USB driver in the Linux kernel did not properly validate USB device descriptors. An attacker with physical access could use this to cause a denial of service (system crash). (CVE-2016-2185) Ralf Spenneberg discovered that the PowerMate USB driver in the Linux kernel did not properly validate USB device descriptors. An attacker with physical access could use this to cause a denial of service (system crash). (CVE-2016-2186) Ralf Spenneberg discovered that the I/O-Warrior USB device driver in the Linux kernel did not properly validate USB device descriptors. An attacker with physical access could use this to cause a denial of service (system crash). (CVE-2016-2188) Sergej Schumilo, Hendrik Schwartke, and Ralf Spenneberg discovered that the USB abstract device control driver for modems and ISDN adapters did not validate endpoint descriptors. An attacker with physical access could use this to cause a denial of service (system crash). (CVE-2016-3138) It was discovered that the IPv4 implementation in the Linux kernel did not perform the destruction of inet device objects properly. An attacker in a guest OS could use this to cause a denial of service (networking outage) in the host OS. (CVE-2016-3156) Andy Lutomirski discovered that the Linux kernel did not properly context- switch IOPL on 64-bit PV Xen guests. An attacker in a guest OS could use this to cause a denial of service (guest OS crash), gain privileges, or obtain sensitive information. (CVE-2016-3157)

    Affected packages

    Package

    Name: linux-lts-utopic

    Purl: pkg:deb/ubuntu/[email protected]~14.04.1?arch=source&distro=trusty

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -3.16.0-71.91~14.04.1

    Affected versions

    3.16.0-25.33~14.04.2
    3.16.0-26.35~14.04.1
    3.16.0-28.37~14.04.1
    3.16.0-28.38~14.04.1
    3.16.0-29.39~14.04.1
    3.16.0-30.40~14.04.1
    3.16.0-31.41~14.04.1
    3.16.0-31.43~14.04.1
    3.16.0-33.44~14.04.1
    3.16.0-34.45~14.04.1
    3.16.0-34.47~14.04.1
    3.16.0-36.48~14.04.1
    3.16.0-37.49~14.04.1
    3.16.0-37.51~14.04.1
    3.16.0-38.52~14.04.1
    3.16.0-39.53~14.04.1
    3.16.0-40.54~14.04.1
    3.16.0-41.55~14.04.1
    3.16.0-41.57~14.04.1
    3.16.0-43.58~14.04.1
    3.16.0-44.59~14.04.1
    3.16.0-45.60~14.04.1
    3.16.0-46.62~14.04.1
    3.16.0-48.64~14.04.1
    3.16.0-49.65~14.04.1
    3.16.0-50.66~14.04.1
    3.16.0-50.67~14.04.1
    3.16.0-51.69~14.04.1
    3.16.0-52.71~14.04.1
    3.16.0-53.72~14.04.1
    3.16.0-55.74~14.04.1
    3.16.0-56.75~14.04.1
    3.16.0-57.77~14.04.1
    3.16.0-59.79~14.04.1
    3.16.0-60.80~14.04.1
    3.16.0-62.82~14.04.1
    3.16.0-62.83~14.04.1
    3.16.0-67.87~14.04.1
    3.16.0-69.89~14.04.1
    3.16.0-70.90~14.04.1

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    USN-2969-1 | CVE-DB