Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

Debian 7 DSA-2906-1 Critical Advisory: Risks of Denial of Service Attack

debian
Calendar Grey April 25, 2014
Debian Logo
Debian DSA-2907-2 resolves several critical vulnerabilities in the Linux kernel affecting system integrity and user permissions.
Several vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service, information leak or privilege escalation

Summary

Several vulnerabilities have been discovered in the Linux kernel that may lead
to a denial of service, information leak or privilege escalation. The Common
Vulnerabilities and Exposures project identifies the following problems:

CVE-2013-0343

George Kargiotakis reported an issue in the temporary address handling
of the IPv6 privacy extensions. Users on the same LAN can cause a denial
of service or obtain access to sensitive information by sending router
advertisement messages that cause temporary address generation to be
disabled.

CVE-2013-2147

Dan Carpenter reported issues in the cpqarray driver for Compaq
Smart2 Controllers and the cciss driver for HP Smart Array controllers allowing users to gain access to sensitive kernel memory.

CVE-2013-2889

Kees Cook discovered missing input sanitization in the HID driver for
Zeroplus game pads that could lead to a local denial of service.

CVE-2013-2893

Kees Cook discovered that missing input sanitization in the HID...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: linux-2.6

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here