Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.840934
Kategorie:Ubuntu Local Security Checks
Titel:Ubuntu Update for linux USN-1363-1
Zusammenfassung:Ubuntu Update for Linux kernel vulnerabilities USN-1363-1
Beschreibung:Summary:
Ubuntu Update for Linux kernel vulnerabilities USN-1363-1

Vulnerability Insight:
A flaw was found in KVM's Programmable Interval Timer (PIT). When a virtual
interrupt control is not available a local user could use this to cause a
denial of service by starting a timer. (CVE-2011-4622)

A flaw was discovered in the XFS filesystem. If a local user mounts a
specially crafted XFS image it could potential execute arbitrary code on
the system. (CVE-2012-0038)

Andy Whitcroft discovered a that the Overlayfs filesystem was not doing the
extended permission checks needed by cgroups and Linux Security Modules
(LSMs). A local user could exploit this to by-pass security policy and
access files that should not be accessible. (CVE-2012-0055)

A flaw was found in the linux kernels IPv4 IGMP query processing. A remote
attacker could exploit this to cause a denial of service. (CVE-2012-0207)

Affected Software/OS:
linux on Ubuntu 11.10

Solution:
Please Install the Updated Packages.

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2011-4622
BugTraq ID: 51172
http://www.securityfocus.com/bid/51172
http://permalink.gmane.org/gmane.comp.emulators.kvm.devel/83564
http://www.openwall.com/lists/oss-security/2011/12/21/7
http://www.redhat.com/support/errata/RHSA-2012-0051.html
http://www.securitytracker.com/id?1026559
SuSE Security Announcement: SUSE-SU-2012:0616 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00013.html
SuSE Security Announcement: openSUSE-SU-2013:0925 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-06/msg00005.html
Common Vulnerability Exposure (CVE) ID: CVE-2012-0038
http://www.openwall.com/lists/oss-security/2012/01/10/11
Common Vulnerability Exposure (CVE) ID: CVE-2012-0055
https://access.redhat.com/security/cve/cve-2012-0055
https://bugzilla.suse.com/show_bug.cgi?id=CVE-2012-0055
http://www.openwall.com/lists/oss-security/2012/01/17/11
Common Vulnerability Exposure (CVE) ID: CVE-2012-0207
http://www.openwall.com/lists/oss-security/2012/01/10/5
CopyrightCopyright (C) 2012 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.