Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Ubuntu 14.04 LTS USN-2644-3 Critical Kernel Failure Due to Regression Bug

Ubuntu Large Esm H500
The system could be made to crash under certain conditions.
=========================================================================Ubuntu Security Notice USN-2644-2
June 21, 2015

linux-lts-utopic regression
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 14.04 LTS

Summary:

The system could be made to crash under certain conditions.

Software Description:
- linux-lts-utopic: Linux hardware enablement kernel from Utopic

Details:

The Fix for CVE-2015-1328 introduced a regression into the Linux kernel's
overlayfs file system. The removal of a directory that only exists on the
lower layer results in a kernel panic.

We apologize for the inconvenience.

Original advisory details:

 Philip Pettersson discovered a privilege escalation when using overlayfs
 mounts inside of user namespaces. A local user could exploit this flaw to
 gain administrative privileges on the system.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 14.04 LTS:
  linux-image-3.16.0-41-generic   3.16.0-41.57~14.04.1
  linux-image-3.16.0-41-generic-lpae  3.16.0-41.57~14.04.1
  linux-image-3.16.0-41-lowlatency  3.16.0-41.57~14.04.1
  linux-image-3.16.0-41-powerpc-e500mc  3.16.0-41.57~14.04.1
  linux-image-3.16.0-41-powerpc-smp  3.16.0-41.57~14.04.1
  linux-image-3.16.0-41-powerpc64-emb  3.16.0-41.57~14.04.1
  linux-image-3.16.0-41-powerpc64-smp  3.16.0-41.57~14.04.1

After a standard system update you need to reboot your computer to make
all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-2644-2
  https://ubuntu.com/security/notices/USN-2644-1
  https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1465998

Package Information:
  https://launchpad.net/ubuntu/+source/linux-lts-utopic/3.16.0-41.57~14.04.1


Ubuntu 14.04 LTS USN-2644-3 Critical Kernel Failure Due to Regression Bug

ubuntu
Calendar Grey June 21, 2015
Dist Ubuntu Esm H88
Ubuntu Security Announcement USN-2644-2 addresses a regression problem that resulted in system failures caused by kernel panic.
The system could be made to crash under certain conditions.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 LTS: linux-image-3.16.0-41-generic 3.16.0-41.57~14.04.1 linux-image-3.16.0-41-generic-lpae 3.16.0-41.57~14.04.1 linux-image-3.16.0-41-lowlatency 3.16.0-41.57~14.04.1 linux-image-3.16.0-41-powerpc-e500mc 3.16.0-41.57~14.04.1 linux-image-3.16.0-41-powerpc-smp 3.16.0-41.57~14.04.1 linux-image-3.16.0-41-powerpc64-emb 3.16.0-41.57~14.04.1 linux-image-3.16.0-41-powerpc64-smp 3.16.0-41.57~14.04.1 After a standard system update you need to reboot your computer to make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-2644-2

https://ubuntu.com/security/notices/USN-2644-1

https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1465998

Severity
critical
Lowest
Low
Medium
High
Critical

June 21, 2015

Package Information

https://launchpad.net/ubuntu/+source/linux-lts-utopic/3.16.0-41.57~14.04.1

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here