Alerts This Week
Warning Icon 1 697
Alerts This Week
Warning Icon 1 697

Debian Jessie DSA-3616-1 Moderate: Linux Kernel Threats Overview

debian
Calendar Grey July 4, 2016
Debian Logo
Mitigating various vulnerabilities in the Linux kernel for Debian systems can enhance security. Ensure to apply the suggested patches and updates regularly to maintain a robust defense.
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks

Summary

CVE-2014-9904

It was discovered that the snd_compress_check_input function used in
the ALSA subsystem does not properly check for an integer overflow,
allowing a local user to cause a denial of service.

CVE-2016-5728

Pengfei Wang discovered a race condition in the MIC VOP driver that
could allow a local user to obtain sensitive information from kernel
memory or cause a denial of service.

CVE-2016-5828

Cyril Bur and Michael Ellerman discovered a flaw in the handling of
Transactional Memory on powerpc systems allowing a local user to
cause a denial of service (kernel crash) or possibly have
unspecified other impact, by starting a transaction, suspending it,
and then calling any of the exec() class system calls.

CVE-2016-5829

A heap-based buffer overflow vulnerability was found in the hiddev
driver, allowing a local user to cause a denial of service or,
potentially escalate their privileges.

CVE-2016-6130

Pengfei Wang discovered a flaw in the S/...

Read the Full Advisory

Package: linux
CVE ID: CVE-2014-9904 CVE-2016-5728 CVE-2016-5828 CVE-2016-5829

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here