|Category:||Debian Local Security Checks|
|Title:||Debian Security Advisory DSA 4196-1 (linux - security update)|
|Summary:||Several vulnerabilities have been discovered in the Linux kernel that;may lead to a privilege escalation or denial of service.;;CVE-2018-1087;Andy Lutomirski discovered that the KVM implementation did not;properly handle #DB exceptions while deferred by MOV SS/POP SS,;allowing an unprivileged KVM guest user to crash the guest or;potentially escalate their privileges.;;CVE-2018-8897;Nick Peterson of Everdox Tech LLC discovered that #DB exceptions;that are deferred by MOV SS or POP SS are not properly handled,;allowing an unprivileged user to crash the kernel and cause a denial;of service.|
Several vulnerabilities have been discovered in the Linux kernel that
may lead to a privilege escalation or denial of service.
Andy Lutomirski discovered that the KVM implementation did not
properly handle #DB exceptions while deferred by MOV SS/POP SS,
allowing an unprivileged KVM guest user to crash the guest or
potentially escalate their privileges.
Nick Peterson of Everdox Tech LLC discovered that #DB exceptions
that are deferred by MOV SS or POP SS are not properly handled,
allowing an unprivileged user to crash the kernel and cause a denial
linux on Debian Linux
For the oldstable distribution (jessie), these problems have been fixed
in version 3.16.56-1+deb8u1. This update includes various fixes for
regressions from 3.16.56-1 as released in DSA-4187-1 (Cf. #897427, #898067 and #898100).
For the stable distribution (stretch), these problems have been fixed in
version 4.9.88-1+deb9u1. The fix for CVE-2018-1108
applied in DSA-4188-1
is temporarily reverted due to various regression, cf. #897599.
We recommend that you upgrade your linux packages.
Common Vulnerability Exposure (CVE) ID: CVE-2018-1087|
BugTraq ID: 104127
Debian Security Information: DSA-4196 (Google Search)
RedHat Security Advisories: RHSA-2018:1318
RedHat Security Advisories: RHSA-2018:1345
RedHat Security Advisories: RHSA-2018:1347
RedHat Security Advisories: RHSA-2018:1348
RedHat Security Advisories: RHSA-2018:1355
RedHat Security Advisories: RHSA-2018:1524
Common Vulnerability Exposure (CVE) ID: CVE-2018-8897
BugTraq ID: 104071
CERT/CC vulnerability note: VU#631579
Debian Security Information: DSA-4201 (Google Search)
RedHat Security Advisories: RHSA-2018:1319
RedHat Security Advisories: RHSA-2018:1346
RedHat Security Advisories: RHSA-2018:1349
RedHat Security Advisories: RHSA-2018:1350
RedHat Security Advisories: RHSA-2018:1351
RedHat Security Advisories: RHSA-2018:1352
RedHat Security Advisories: RHSA-2018:1353
RedHat Security Advisories: RHSA-2018:1354
|Copyright||Copyright (C) 2018 Greenbone Networks GmbH|
|This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.