Ubuntu Security Update USN-8280-2: Linux kernel (Azure)vulnerabilities

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,735
Reaction score
74
Credits
-1,257
It was discovered that the Linux kernel algif_aead module did not properly handle in-place cryptographic operations. This flaw is known as Copy Fail. A local attacker could use this to escalate privileges, or possibly escape a container. (CVE-2026-31431) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Cryptographic API; - Packet sockets; - TLS protocol; (CVE-2026-31504, CVE-2026-31533, CVE-2026-43033, CVE-2026-43077, CVE-2026-43078)

Continue reading...
 


Follow Linux.org

Members online


Top