Ubuntu Security Update LSN-0079-1: Kernel Live Patch Security Notice

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,935
Reaction score
80
Credits
-1,257
It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.(CVE-2021-3600) It was discovered that the virtual file system implementation in the Linux kernel contained an unsigned to signed integer conversion error. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code.(CVE-2021-33909)

Continue reading...
 


Follow Linux.org

Staff online


Latest posts

Top