You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa libnl3

Sigurnosni nedostatak programskog paketa libnl3

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-3311-1
June 06, 2017

libnl3 vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 17.04
– Ubuntu 16.10
– Ubuntu 16.04 LTS
– Ubuntu 14.04 LTS

Summary:

libnl could be made to crash or run programs.

Software Description:
– libnl3: library for dealing with netlink sockets

Details:

It was discovered that libnl incorrectly handled memory when performing
certain operations. A local attacker could possibly use this issue to cause
libnl to crash, resulting in a denial of service, or execute arbitrary
code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 17.04:
libnl-3-200 3.2.29-0ubuntu2.1

Ubuntu 16.10:
libnl-3-200 3.2.27-1ubuntu0.16.10.1

Ubuntu 16.04 LTS:
libnl-3-200 3.2.27-1ubuntu0.16.04.1

Ubuntu 14.04 LTS:
libnl-3-200 3.2.21-1ubuntu4.1

After a standard system update you need to reboot your computer to make
all the necessary changes.

References:
https://www.ubuntu.com/usn/usn-3311-1
CVE-2017-0553

Package Information:
https://launchpad.net/ubuntu/+source/libnl3/3.2.29-0ubuntu2.1
https://launchpad.net/ubuntu/+source/libnl3/3.2.27-1ubuntu0.16.10.1
https://launchpad.net/ubuntu/+source/libnl3/3.2.27-1ubuntu0.16.04.1
https://launchpad.net/ubuntu/+source/libnl3/3.2.21-1ubuntu4.1

—–BEGIN PGP SIGNATURE—–
Version: GnuPG v2
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=uoTn
—–END PGP SIGNATURE—–

AutorVlatka Misic
Cert idNCERT-REF-2017-06-0039-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostatak programskog paketa lintian

Otkriven je sigurnosni nedostatak u programskom paketu lintian za operacijski sustav Ubuntu. Otkriveni nedostatak potencijalnim napadačima omogućuje izvršavanje proizvoljnog programskog...

Close