You are here
Home > Preporuke > Sigurnosni nedostatak jezgre operacijskog sustava

Sigurnosni nedostatak jezgre operacijskog sustava

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-3908-1
March 12, 2019

linux vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 14.04 LTS

Summary:

The system could be made to run programs as an administrator.

Software Description:
– linux: Linux kernel

Details:

Jann Horn discovered a race condition in the fork() system call in the
Linux kernel. A local attacker could use this to gain access to services
that cache authorizations.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 14.04 LTS:
linux-image-3.13.0-166-generic 3.13.0-166.216
linux-image-3.13.0-166-generic-lpae 3.13.0-166.216
linux-image-3.13.0-166-lowlatency 3.13.0-166.216
linux-image-3.13.0-166-powerpc-e500 3.13.0-166.216
linux-image-3.13.0-166-powerpc-e500mc 3.13.0-166.216
linux-image-3.13.0-166-powerpc-smp 3.13.0-166.216
linux-image-3.13.0-166-powerpc64-emb 3.13.0-166.216
linux-image-3.13.0-166-powerpc64-smp 3.13.0-166.216
linux-image-generic 3.13.0.166.177
linux-image-generic-lpae 3.13.0.166.177
linux-image-lowlatency 3.13.0.166.177
linux-image-powerpc-e500 3.13.0.166.177
linux-image-powerpc-e500mc 3.13.0.166.177
linux-image-powerpc-smp 3.13.0.166.177
linux-image-powerpc64-emb 3.13.0.166.177
linux-image-powerpc64-smp 3.13.0.166.177
linux-image-virtual 3.13.0.166.177

After a standard system update you need to reboot your computer to make
all the necessary changes.

ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
reinstall all third party kernel modules you might have installed.
Unless you manually uninstalled the standard kernel metapackages
(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,
linux-powerpc), a standard system upgrade will automatically perform
this as well.

References:
https://usn.ubuntu.com/usn/usn-3908-1
CVE-2019-6133

Package Information:
https://launchpad.net/ubuntu/+source/linux/3.13.0-166.216

—–BEGIN PGP SIGNATURE—–
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=Fnw2
—–END PGP SIGNATURE—–

AutorJosip Papratovic
Cert idNCERT-REF-2019-03-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci jezgre operacijskog sustava

Otkriveni su sigurnosni nedostaci jezgre operacijskog sustava Redhat. Otkriveni nedostaci potencijalnim napadačima omogućuju izazivanje DoS stanja. Savjetuje se ažuriranje izdanim...

Close