Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Several security issues were fixed in the kernel.. =========================================================================Ubuntu Security Notice USN-3084-1 September 19, 2016 linux vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 LTS Summary: Several security issues were fixed in the kernel. Software Description: - linux: Linux kernel Details: Pengfei Wang discovered a race condition in the audit subsystem in the Linux kernel. A local attacker could use this to corrupt audit logs or disrupt system-call auditing. (CVE-2016-6136) It was discovered that the powerpc and powerpc64 hypervisor-mode KVM implementation in the Linux kernel for did not properly maintain state about transactional memory. An unprivileged attacker in a guest could cause a denial of service (CPU lockup) in the host OS. (CVE-2016-5412) Pengfei Wang discovered a race condition in the Chrome OS embedded controller device driver in the Linux kernel. A local attacker could use this to cause a denial of service (system crash). (CVE-2016-6156) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS: linux-image-4.4.0-38-generic 4.4.0-38.57 linux-image-4.4.0-38-generic-lpae 4.4.0-38.57 linux-image-4.4.0-38-lowlatency 4.4.0-38.57 linux-image-4.4.0-38-powerpc-e500mc 4.4.0-38.57 linux-image-4.4.0-38-powerpc-smp 4.4.0-38.57 linux-image-4.4.0-38-powerpc64-emb 4.4.0-38.57 linux-image-4.4.0-38-powerpc64-smp 4.4.0-38.57 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic,linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: CVE-2016-5412, CVE-2016-6136, CVE-2016-6156 Package Information: https://launchpad.net/ubuntu/+source/linux/4.4.0-38.57 . Multiple security patches applied for Ubuntu 16.04 LTS kernel weaknesses, addressing denial of service risks and auditing concerns.. Ubuntu Update, Linux Kernel, Security Fixes. . Severity: Critical. LinuxSecurity.com Team
Several security issues were fixed in the kernel.. =========================================================================Ubuntu Security Notice USN-3084-2 September 19, 2016 linux-lts-xenial vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 14.04 LTS Summary: Several security issues were fixed in the kernel. Software Description: - linux-lts-xenial: Linux hardware enablement kernel from Xenial for Trusty Details: USN-3084-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04 LTS. This update provides the corresponding updates for the Linux Hardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for Ubuntu 14.04 LTS. Pengfei Wang discovered a race condition in the audit subsystem in the Linux kernel. A local attacker could use this to corrupt audit logs or disrupt system-call auditing. (CVE-2016-6136) It was discovered that the powerpc and powerpc64 hypervisor-mode KVM implementation in the Linux kernel for did not properly maintain state about transactional memory. An unprivileged attacker in a guest could cause a denial of service (CPU lockup) in the host OS. (CVE-2016-5412) Pengfei Wang discovered a race condition in the Chrome OS embedded controller device driver in the Linux kernel. A local attacker could use this to cause a denial of service (system crash). (CVE-2016-6156) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 LTS: linux-image-4.4.0-38-generic 4.4.0-38.57~14.04.1 linux-image-4.4.0-38-generic-lpae 4.4.0-38.57~14.04.1 linux-image-4.4.0-38-lowlatency 4.4.0-38.57~14.04.1 linux-image-4.4.0-38-powerpc-e500mc 4.4.0-38.57~14.04.1 linux-image-4.4.0-38-powerpc-smp 4.4.0-38.57~14.04.1 linux-image-4.4.0-38-powerpc64-emb 4.4.0-38.57~14.04.1 linux-image-4.4.0-38-powerpc64-smp 4.4.0-38.57~14.04.1 After a standard system update you need to reboot your computer to make all thenecessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-3084-2 CVE-2016-5412, CVE-2016-6136, CVE-2016-6156 Package Information: https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-38.57~14.04.1 . Explore the Ubuntu Security Bulletin USN-3291-3 detailing crucial kernel enhancements addressing security flaws on Ubuntu 16.04 LTS.. Kernel Security Updates, Ubuntu HWE Kernel, Security Issues, Linux Kernel Patches. . Severity: Important. LinuxSecurity.com Team
USN-2598-1 Introduced a regression in the Linux kernel.. =========================================================================Ubuntu Security Notice USN-2598-2 May 09, 2015 linux vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 14.04 LTS Summary: USN-2598-1 Introduced a regression in the Linux kernel. Software Description: - linux: Linux kernel Details: USN-2598-1 fixed vulnerabilities in the Linux kernel, however an unrelated regression in the auditing of some path names was introduced. Due to the regression the system could crash under certain conditions. This update fixes the problem. We apologize for the inconvenience. Original advisory details: A race condition between chown() and execve() was discovered in the Linux kernel. A local attacker could exploit this race by using chown on a setuid-user-binary to gain administrative privileges. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 LTS: linux-image-3.13.0-52-generic 3.13.0-52.86 linux-image-3.13.0-52-generic-lpae 3.13.0-52.86 linux-image-3.13.0-52-lowlatency 3.13.0-52.86 linux-image-3.13.0-52-powerpc-e500 3.13.0-52.86 linux-image-3.13.0-52-powerpc-e500mc 3.13.0-52.86 linux-image-3.13.0-52-powerpc-smp 3.13.0-52.86 linux-image-3.13.0-52-powerpc64-emb 3.13.0-52.86 linux-image-3.13.0-52-powerpc64-smp 3.13.0-52.86 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-2598-2 https://ubuntu.com/security/notices/USN-2598-1 https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1450442 Package Information: https://launchpad.net/ubuntu/+source/linux/3.13.0-52.86 . =========================================================================Ubuntu Security NoticeUSN-. usn-2598-1, introduced, regression, linux, kernel, ============================================. . Severity: Critical. LinuxSecurity.com Team
Updated openssh packages that fix a security issue and various bugs are now available. A flaw was found in the way the ssh server wrote account names to the audit subsystem. An attacker could inject strings containing parts of audit messages, which could possibly mislead or confuse audit log parsing tools. This update has been rated as having moderate security impact by the Red Hat Security Response Team.. - --------------------------------------------------------------------- Red Hat Security Advisory Synopsis: Moderate: openssh security and bug fix update Advisory ID: RHSA-2007:0540-04 Advisory URL: https://access.redhat.com/errata/RHSA-2007:0540.html Issue date: 2007-11-07 Updated on: 2007-11-07 Product: Red Hat Enterprise Linux Keywords: GSSAPI krb5 MLS level role SELinux NSS token audit CVE Names: CVE-2006-5052 CVE-2007-3102 - ---------------------------------------------------------------------1. Summary: Updated openssh packages that fix a security issue and various bugs are now available. This update has been rated as having moderate security impact by the Red Hat Security Response Team. 2. Relevant releases/architectures: Red Hat Enterprise Linux Desktop (v. 5 client) - i386, x86_64 Red Hat Enterprise Linux (v. 5 server) - i386, ia64, ppc, s390x, x86_64 3. Problem description: OpenSSH is OpenBSD's SSH (Secure SHell) protocol implementation. These packages include the core files necessary for both the OpenSSH client and server. A flaw was found in the way the ssh server wrote account names to the audit subsystem. An attacker could inject strings containing parts of audit messages, which could possibly mislead or confuse audit log parsing tools. (CVE-2007-3102) A flaw was found in the way the OpenSSH server processes GSSAPI authentication requests. When GSSAPI authentication was enabled in the OpenSSH server, a remote attacker was potentially able to determine if a usernameis valid. (CVE-2006-5052) The following bugs in SELinux MLS (Multi-Level Security) support has also been fixed in this update: * It was sometimes not possible to select a SELinux role and level when logging in using ssh. * If the user obtained a non-default SELinux role or level, the role change was not recorded in the audit subsystem. * In some cases, on labeled networks, sshd allowed logins from level ranges it should not allow. The updated packages also contain experimental support for using private keys stored in PKCS#11 tokens for client authentication. The support is provided through the NSS (Network Security Services) library. All users of openssh should upgrade to these updated packages, which contain patches to correct these issues. 4. Solution: Before applying this update, make sure that all previously-released errata relevant to your system have been applied. This update is available via Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at 5. Bug IDs fixed (http://bugzilla.redhat.com/): 227733 - [LSPP] unable to ssh into a system as root/auditadm_r 229278 - LSPP: ssh-mls allows a level through that it should not 231695 - LSPP: user unable to ssh to system with user/role/level context 234638 - CVE-2006-5052 GSSAPI information leak 234951 - [LSPP] openssh server fails to parse level correctly 248059 - CVE-2007-3102 audit logging of failed logins 6. RPMs required: Red Hat Enterprise Linux Desktop (v. 5 client): SRPMS: 153a17e8f011bde6d984ce73b92cebff openssh-4.3p2-24.el5.src.rpm i386: ba4d6b70e9de7860b5ebe370ca5cdf53 openssh-4.3p2-24.el5.i386.rpm d7b28f340fe82d28660876ca6bcc0a35 openssh-askpass-4.3p2-24.el5.i386.rpm c4216b9a462e5f0462096f1d9b6b8d5f openssh-clients-4.3p2-24.el5.i386.rpm 0d1b5895334f519631856e593f58cb88 openssh-debuginfo-4.3p2-24.el5.i386.rpm 9f17e3dfe06fbbed05f765abd6b2509a openssh-server-4.3p2-24.el5.i386.rpm x86_64: 67538525ad7cf2f1d310a429b44890c7 openssh-4.3p2-24.el5.x86_64.rpm 37118e168b7a55531459b4743d3522fb openssh-askpass-4.3p2-24.el5.x86_64.rpm 6ce7070b90732f3c837df5cfc9287187 openssh-clients-4.3p2-24.el5.x86_64.rpm 96ae0db5a9a4461f41dad2482e9c0945 openssh-debuginfo-4.3p2-24.el5.x86_64.rpm a7141781bfe5f21f2fc5b192ebf6693e openssh-server-4.3p2-24.el5.x86_64.rpm Red Hat Enterprise Linux (v. 5 server): SRPMS: 153a17e8f011bde6d984ce73b92cebff openssh-4.3p2-24.el5.src.rpm i386: ba4d6b70e9de7860b5ebe370ca5cdf53 openssh-4.3p2-24.el5.i386.rpm d7b28f340fe82d28660876ca6bcc0a35 openssh-askpass-4.3p2-24.el5.i386.rpm c4216b9a462e5f0462096f1d9b6b8d5f openssh-clients-4.3p2-24.el5.i386.rpm 0d1b5895334f519631856e593f58cb88 openssh-debuginfo-4.3p2-24.el5.i386.rpm 9f17e3dfe06fbbed05f765abd6b2509a openssh-server-4.3p2-24.el5.i386.rpm ia64: 5a4b28d5af0be02b37e02ae0aed692aa openssh-4.3p2-24.el5.ia64.rpm b2672d6bc6fbbd29414d23523631ac03 openssh-askpass-4.3p2-24.el5.ia64.rpm 2e7e42fd888d7fb1a87531e3f7a58889 openssh-clients-4.3p2-24.el5.ia64.rpm e7fe2def4325a0954c033b07ddae7db9 openssh-debuginfo-4.3p2-24.el5.ia64.rpm e909c8bac59183dfe6f47f1e71c5306e openssh-server-4.3p2-24.el5.ia64.rpm ppc: 7c4fbb3d8e40b083acdbd6a5186e1db3 openssh-4.3p2-24.el5.ppc.rpm 4f878a818e9fd07d16becbf66e35389f openssh-askpass-4.3p2-24.el5.ppc.rpm 9c31ff09ef6ca0a20bba14fb89c3e250 openssh-clients-4.3p2-24.el5.ppc.rpm b36d39426902c394c54cdb0147ced3f7 openssh-debuginfo-4.3p2-24.el5.ppc.rpm 3187b878bf79dc71e226ae8096f07081 openssh-server-4.3p2-24.el5.ppc.rpm s390x: f4c3b2d6c3b170376f0e3fce0b1f38ec openssh-4.3p2-24.el5.s390x.rpm ab38b48be3d112c5aa333296bd9cbc3f openssh-askpass-4.3p2-24.el5.s390x.rpm 03643d364acf47e086c913c95dae8cb2 openssh-clients-4.3p2-24.el5.s390x.rpm 67e1a666b84e7dc73f645dd6d7f1a6a5 openssh-debuginfo-4.3p2-24.el5.s390x.rpm 0d6286527c165d1df00ece5761fcefed openssh-server-4.3p2-24.el5.s390x.rpm x86_64: 67538525ad7cf2f1d310a429b44890c7 openssh-4.3p2-24.el5.x86_64.rpm 37118e168b7a55531459b4743d3522fb openssh-askpass-4.3p2-24.el5.x86_64.rpm 6ce7070b90732f3c837df5cfc9287187 openssh-clients-4.3p2-24.el5.x86_64.rpm 96ae0db5a9a4461f41dad2482e9c0945 openssh-debuginfo-4.3p2-24.el5.x86_64.rpm a7141781bfe5f21f2fc5b192ebf6693e openssh-server-4.3p2-24.el5.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://www.cve.org/CVERecord?id=CVE-2006-5052 https://www.cve.org/CVERecord?id=CVE-2007-3102 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2007 Red Hat, Inc. . Critical patch release for openssl tackles vulnerabilities and exploits. Vital for CentOS users to apply without delay.. Openssh Update, Red Hat Security Advisory, SSH Bug Fix, Audit Logging Issue, Security Impact. . LinuxSecurity.com Team
This update should fix potential problems with auditing in pam when used on systems with kernels without audit compiled in.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-799 2005-09-06 ---------------------------------------------------------------------Product : Fedora Core 4 Name : pam Version : 0.79 Release : 9.5 Summary : A security tool which provides authentication for applications. Description : PAM (Pluggable Authentication Modules) is a system security tool that allows system administrators to set authentication policy without having to recompile programs that handle authentication. ---------------------------------------------------------------------Update Information: This update should fix potential problems with auditing in pam when used on systems with kernels without audit compiled in. ---------------------------------------------------------------------* Wed Aug 24 2005 Tomas Mraz 0.79-9.5 - add option to pam_loginuid to require auditd - don't fail in audit code when audit is not compiled in on the newest kernels (#166422) ---------------------------------------------------------------------This update can be downloaded from: 429c2170f7665f14ba91dbe3f0e43f8f SRPMS/pam-0.79-9.5.src.rpm 9f98b5b90303f371769d4b6de43db6c4 ppc/pam-0.79-9.5.ppc.rpm 73af727cbf25bf8716acaaa29ea7e330 ppc/pam-devel-0.79-9.5.ppc.rpm a04e8d8b11758402bd64dbc902043147 ppc/debug/pam-debuginfo-0.79-9.5.ppc.rpm 7548cfef970e82590da311e6f0b212bd ppc/pam-0.79-9.5.ppc64.rpm 46e011fdd61d7cad59a6b6e47190d19b ppc/pam-devel-0.79-9.5.ppc64.rpm c8624c43e9befba0c1b3630ca532b79c x86_64/pam-0.79-9.5.x86_64.rpm b39cee0df4b838fb4acc547afa41a2bc x86_64/pam-devel-0.79-9.5.x86_64.rpm a117147e767e2e0c88b4bfe85cab13f7 x86_64/debug/pam-debuginfo-0.79-9.5.x86_64.rpm 7817f4a44c13aa8e904edbd8f4fc2521 x86_64/pam-0.79-9.5.i386.rpm 5fbedd814834089317142b7900832a4a x86_64/pam-devel-0.79-9.5.i386.rpm 7817f4a44c13aa8e904edbd8f4fc2521 i386/pam-0.79-9.5.i386.rpm 5fbedd814834089317142b7900832a4a i386/pam-devel-0.79-9.5.i386.rpm 8021c28adcbdd132f17e07580b73c214 i386/debug/pam-debuginfo-0.79-9.5.i386.rpm This update can also be installed with the Update Agent; you can launch the Update Agent with the 'up2date' command. ----------------------------------------------------------------------- fedora-announce-list mailing list
Get the latest Linux and open source security news straight to your inbox.