USN-3256-2
Dashboard / Vulnerabilities / USN-3256-2
USN-3256-2
Summary: linux-hwe, linux-lts-trusty, linux-lts-xenial vulnerability
Details: USN-3256-1 fixed vulnerabilities in the Linux kernel for Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 16.10. This update provides the corresponding updates for the Linux Hardware Enablement (HWE) kernel for each of the respective prior Ubuntu LTS releases. Andrey Konovalov discovered that the AF_PACKET implementation in the Linux kernel did not properly validate certain block-size data. A local attacker could use this to cause a denial of service (system crash).
References: https://ubuntu.com/security/notices/USN-3256-2, https://ubuntu.com/security/CVE-2017-7308
Affected packages
Package
Name: linux-lts-xenial
Purl: pkg:deb/ubuntu/[email protected]~14.04.1?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
