Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 436
Alerts This Week
Warning Icon 1 436

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -2 articles for you...
172

Ubuntu 23.10 USN-6454-4 Critical: StarFive Kernel Denial Of Service

Several security issues were fixed in the Linux kernel.. ========================================================================== Ubuntu Security Notice USN-6454-4 November 01, 2023 linux-starfive vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 23.10 Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-starfive: Linux kernel for StarFive processors Details: Kyle Zeng discovered that the netfilter subsystem in the Linux kernel contained a race condition in IP set operations in certain situations. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-42756) Alex Birnberg discovered that the netfilter subsystem in the Linux kernel did not properly validate register length, leading to an out-of-bounds write vulnerability. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2023-4881) It was discovered that the Quick Fair Queueing scheduler implementation in the Linux kernel did not properly handle network packets in certain conditions, leading to a use after free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-4921) Kevin Rich discovered that the netfilter subsystem in the Linux kernel did not properly handle removal of rules from chain bindings in certain circumstances, leading to a use-after-free vulnerability. A local attacker could possibly use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2023-5197) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 23.10: linux-image-6.5.0-1003-starfive 6.5.0-1003.4 linux-image-starfive 6.5.0.1003.5 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to anunavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6454-4 https://ubuntu.com/security/notices/USN-6454-1 CVE-2023-42756, CVE-2023-4881, CVE-2023-4921, CVE-2023-5197 Package Information: https://launchpad.net/ubuntu/+source/linux-starfive/6.5.0-1003.4 . Updates for numerous security flaws in the Linux kernel for Ubuntu 23.10 have been released as part of USN-6454-4, tackling critical vulnerabilities.. Linux Kernel Vulnerabilities, Ubuntu Security Notice, Denial Of Service, StarFive Kernel. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Nov 01, 2023 Critical Ubuntu
172

Ubuntu 20.04 LTS USN-6093-1 Critical: Linux Kernel Access Issues

Several security issues were fixed in the Linux kernel.. =========================================================================Ubuntu Security Notice USN-6093-1 May 22, 2023 linux-bluefield vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-bluefield: Linux kernel for NVIDIA BlueField platforms Details: It was discovered that the Traffic-Control Index (TCINDEX) implementation in the Linux kernel did not properly perform filter deactivation in some situations. A local attacker could possibly use this to gain elevated privileges. Please note that with the fix for this CVE, kernel support for the TCINDEX classifier has been removed. (CVE-2023-1829) It was discovered that the Traffic-Control Index (TCINDEX) implementation in the Linux kernel contained a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-1281) Jiasheng Jiang discovered that the HSA Linux kernel driver for AMD Radeon GPU devices did not properly validate memory allocation in certain situations, leading to a null pointer dereference vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-3108) It was discovered that the infrared transceiver USB driver did not properly handle USB control messages. A local attacker with physical access could plug in a specially crafted USB device to cause a denial of service (memory exhaustion). (CVE-2022-3903) Haowei Yan discovered that a race condition existed in the Layer 2 Tunneling Protocol (L2TP) implementation in the Linux kernel. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-4129) Jordy Zomer and Alexandra Sandulescu discovered thatsyscalls invoking the do_prlimit() function in the Linux kernel did not properly handle speculative execution barriers. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2023-0458) It was discovered that the Human Interface Device (HID) support driver in the Linux kernel contained a type confusion vulnerability in some situations. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-1073) It was discovered that a memory leak existed in the SCTP protocol implementation in the Linux kernel. A local attacker could use this to cause a denial of service (memory exhaustion). (CVE-2023-1074) Lianhui Tang discovered that the MPLS implementation in the Linux kernel did not properly handle certain sysctl allocation failure conditions, leading to a double-free vulnerability. An attacker could use this to cause a denial of service or possibly execute arbitrary code. (CVE-2023-26545) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: linux-image-5.4.0-1062-bluefield 5.4.0-1062.68 linux-image-bluefield 5.4.0.1062.57 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6093-1 CVE-2022-3108, CVE-2022-3903, CVE-2022-4129, CVE-2023-0458, CVE-2023-1073, CVE-2023-1074, CVE-2023-1281, CVE-2023-1829, CVE-2023-26545 Package Information: https://launchpad.net/ubuntu/+source/linux-bluefield/5.4.0-1062.68 . Ubuntu 20.04 LTS's linux-bluefield kernel fixes various security issues, targeting denial of service and local access threats.. linux kernel threats, Ubuntu security vulnerabilities, linux-bluefield updates. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 May 22, 2023 Critical Ubuntu
172

Ubuntu 22.04 Critical Advisory USN-5987-1: Kernel Threats Overview

Several security issues were fixed in the Linux kernel.. =========================================================================Ubuntu Security Notice USN-5987-1 March 29, 2023 linux-gke, linux-gke-5.15, linux-ibm, linux-kvm vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-gke: Linux kernel for Google Container Engine (GKE) systems - linux-ibm: Linux kernel for IBM cloud systems - linux-kvm: Linux kernel for cloud environments - linux-gke-5.15: Linux kernel for Google Container Engine (GKE) systems Details: It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs. (CVE-2022-2196) It was discovered that a use-after-free vulnerability existed in the SGI GRU driver in the Linux kernel. A local attacker could possibly use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-3424) Ziming Zhang discovered that the VMware Virtual GPU DRM driver in the Linux kernel contained an out-of-bounds write vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-36280) Hyunwoo Kim discovered that the DVB Core driver in the Linux kernel did not properly perform reference counting in some situations, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-41218) Gerald Lee discovered that the USB Gadget file system implementation in the Linux kernel contained a race condition, leading to a use-after-free vulnerability in some situations.A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-4382) It was discovered that the NTFS file system implementation in the Linux kernel did not properly validate attributes in certain situations, leading to an out-of-bounds write vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-48423) It was discovered that the NTFS file system implementation in the Linux kernel did not properly validate attributes in certain situations, leading to an out-of-bounds read vulnerability. A local attacker could possibly use this to expose sensitive information (kernel memory). (CVE-2022-48424) José Oliveira and Rodrigo Branco discovered that the prctl syscall implementation in the Linux kernel did not properly protect against indirect branch prediction attacks in some situations. A local attacker could possibly use this to expose sensitive information. (CVE-2023-0045) It was discovered that the KSMBD implementation in the Linux kernel did not properly validate buffer lengths, leading to a heap-based buffer overflow. A remote attacker could possibly use this to cause a denial of service (system crash). (CVE-2023-0210) It was discovered that a use-after-free vulnerability existed in the Advanced Linux Sound Architecture (ALSA) subsystem. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-0266) Kyle Zeng discovered that the class-based queuing discipline implementation in the Linux kernel contained a type confusion vulnerability in some situations. An attacker could use this to cause a denial of service (system crash). (CVE-2023-23454) Kyle Zeng discovered that the ATM VC queuing discipline implementation in the Linux kernel contained a type confusion vulnerability in some situations. An attacker could use this to cause a denial of service (system crash). (CVE-2023-23455) It was discovered that the RNDIS USB driver in the Linuxkernel contained an integer overflow vulnerability. A local attacker with physical access could plug in a malicious USB device to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-23559) It was discovered that the NTFS file system implementation in the Linux kernel did not properly handle a loop termination condition, leading to an out-of-bounds read vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly expose sensitive information. (CVE-2023-26606) Wei Chen discovered that the DVB USB AZ6027 driver in the Linux kernel contained a null pointer dereference when handling certain messages from user space. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-28328) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: linux-image-5.15.0-1027-ibm 5.15.0-1027.30 linux-image-5.15.0-1030-gke 5.15.0-1030.35 linux-image-5.15.0-1030-kvm 5.15.0-1030.35 linux-image-gke 5.15.0.1030.29 linux-image-gke-5.15 5.15.0.1030.29 linux-image-ibm 5.15.0.1027.23 linux-image-kvm 5.15.0.1030.26 Ubuntu 20.04 LTS: linux-image-5.15.0-1029-gke 5.15.0-1029.34~20.04.1 linux-image-gke-5.15 5.15.0.1029.34~20.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-5987-1 CVE-2022-2196, CVE-2022-3424, CVE-2022-36280, CVE-2022-41218, CVE-2022-4382, CVE-2022-48423, CVE-2022-48424, CVE-2023-0045, CVE-2023-0210, CVE-2023-0266, CVE-2023-23454, CVE-2023-23455, CVE-2023-23559, CVE-2023-26606, CVE-2023-28328 Package Information: https://launchpad.net/ubuntu/+source/linux-gke/5.15.0-1030.35 https://launchpad.net/ubuntu/+source/linux-ibm/5.15.0-1027.30 https://launchpad.net/ubuntu/+source/linux-kvm/5.15.0-1030.35 https://launchpad.net/ubuntu/+source/linux-gke-5.15/5.15.0-1029.34~20.04.1 . Ubuntu 22.04 and 20.04 LTS tackle several kernel-related challenges by delivering solutions for a range of security threats.. Ubuntu Kernel Security, Threat Mitigation, Critical Vulnerability Fixes. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Mar 29, 2023 Critical Ubuntu
172

Ubuntu 22.04 LTS Security Advisory USN-5471-1: Kernel Threats and Risks

Several security issues were fixed in the Linux kernel.. =========================================================================Ubuntu Security Notice USN-5471-1 June 08, 2022 linux-oem-5.17 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-oem-5.17: Linux kernel for OEM systems Details: It was discovered that the Linux kernel did not properly restrict access to the kernel debugger when booted in secure boot environments. A privileged attacker could use this to bypass UEFI Secure Boot restrictions. (CVE-2022-21499) Aaron Adams discovered that the netfilter subsystem in the Linux kernel did not properly handle the removal of stateful expressions in some situations, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2022-1966) It was discovered that the IP implementation in the Linux kernel did not provide sufficient randomization when calculating port offsets. An attacker could possibly use this to expose sensitive information. (CVE-2022-1012) Duoming Zhou discovered race conditions in the AX.25 amateur radio protocol implementation in the Linux kernel, leading to use-after-free vulnerabilities. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-1205) It was discovered that the Marvell NFC device driver implementation in the Linux kernel did not properly perform memory cleanup operations in some situations, leading to a use-after-free vulnerability. A local attacker could possibly use this to cause a denial of service (system) or execute arbitrary code. (CVE-2022-1734) Minh Yuan discovered that the floppy driver in the Linux kernel contained a race condition in some situations, leading to a use-after-free vulnerability. A localattacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-1836) Ziming Zhang discovered that the netfilter subsystem in the Linux kernel did not properly validate sets with multiple ranged fields. A local attacker could use this to cause a denial of service or execute arbitrary code. (CVE-2022-1972) Joseph Ravichandran and Michael Wang discovered that the io_uring subsystem in the Linux kernel did not properly initialize data in some situations. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2022-29968) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: linux-image-5.17.0-1011-oem 5.17.0-1011.12 linux-image-oem-22.04 5.17.0.1011.10 linux-image-oem-22.04a 5.17.0.1011.10 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-5471-1 CVE-2022-1012, CVE-2022-1205, CVE-2022-1734, CVE-2022-1836, CVE-2022-1966, CVE-2022-1972, CVE-2022-21499, CVE-2022-29968 Package Information: https://launchpad.net/ubuntu/+source/linux-oem-5.17/5.17.0-1011.12 . A series of security patches have been implemented in the Ubuntu 22.04 LTS Linux kernel, resolving various threats related to denial of service and possible unauthorized access concerns.. Linux Kernel Updates, OEM Kernel Fixes, Ubuntu Security Issues. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Jun 08, 2022 Critical Ubuntu
100

SUSE Linux 15-SP2: 2022:0365-1 Critical: Kernel Multiple Threats

An update that solves 7 vulnerabilities and has 9 fixes is now available. . SUSE Security Update: Security update for the Linux Kernel ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:0365-1 Rating: critical References: #1177599 #1183405 #1185377 #1188605 #1193096 #1193506 #1193861 #1193864 #1193867 #1194048 #1194227 #1194880 #1195009 #1195065 #1195184 #1195254 Cross-References: CVE-2021-22600 CVE-2021-39648 CVE-2021-39657 CVE-2021-45095 CVE-2022-0330 CVE-2022-0435 CVE-2022-22942 CVSS scores: CVE-2021-22600 (NVD) : 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2021-22600 (SUSE): 8.4 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVE-2021-39648 (SUSE): 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N CVE-2021-39657 (SUSE): 3.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L CVE-2021-45095 (NVD) : 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N CVE-2021-45095 (SUSE): 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N CVE-2022-0435 (SUSE): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H CVE-2022-22942 (SUSE): 7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: SUSE Enterprise Storage 7 SUSE Linux Enterprise High Availability 15-SP2 SUSE Linux Enterprise High Performance Computing 15-SP2 SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS SUSE Linux Enterprise Micro 5.0 SUSE Linux Enterprise Module for Live Patching 15-SP2 SUSE Linux Enterprise Realtime Extension 15-SP2 SUSE Linux Enterprise Server15-SP2 SUSE Linux Enterprise Server 15-SP2-BCL SUSE Linux Enterprise Server 15-SP2-LTSS SUSE Linux Enterprise Server for SAP 15-SP2 SUSE Linux Enterprise Server for SAP Applications 15-SP2 SUSE Linux Enterprise Storage 7 SUSE Manager Proxy 4.1 SUSE Manager Retail Branch Server 4.1 SUSE Manager Server 4.1 ______________________________________________________________________________ An update that solves 7 vulnerabilities and has 9 fixes is now available. Description: The SUSE Linux Enterprise 15 SP2 LTSS kernel was updated receive various security and bugfixes. The following security bugs were fixed: - CVE-2022-0435: Fixed remote stack overflow in net/tipc module that validate domain record count on input (bsc#1195254). - CVE-2021-45095: Fixed refcount leak in pep_sock_accept in net/phonet/pep.c (bnc#1193867). - CVE-2022-22942: Fixed stale file descriptors on failed usercopy (bsc#1195065). - CVE-2021-22600: Fixed double free bug in packet_set_ring() in net/packet/af_packet.c that could have been exploited by a local user through crafted syscalls to escalate privileges or deny service (bnc#1195184). - CVE-2021-39657: Fixed out of bounds read due to a missing bounds check in ufshcd_eh_device_reset_handler of ufshcd.c. This could lead to local information disclosure with System execution privileges needed (bnc#1193864). - CVE-2021-39648: Fixed possible disclosure of kernel heap memory due to a race condition in gadget_dev_desc_UDC_show of configfs.c. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation (bnc#1193861). - CVE-2022-0330: Fixed flush TLBs before releasing backing store (bsc#1194880). The following non-security bugs were fixed: - bpf: Verifer,adjust_scalar_min_max_vals to always call update_reg_bounds() (bsc#1194227). - btrfs: tree-checker: Add EXTENT_ITEM and METADATA_ITEM check (bsc#1195009). - btrfs: tree-checker: annotate all error branches as unlikely (bsc#1195009). - btrfs: tree-checker: check for BTRFS_BLOCK_FLAG_FULL_BACKREF being set improperly (bsc#1195009). - hv_netvsc: Set needed_headroom according to VF (bsc#1193506). - net, xdp: Introduce xdp_init_buff utility routine (bsc#1193506). - net, xdp: Introduce xdp_prepare_buff utility routine (bsc#1193506). - net: allow retransmitting a TCP packet if original is still in queue (bsc#1188605 bsc#1187428). - net: mana: Add RX fencing (bsc#1193506). - net: mana: Add XDP support (bsc#1193506). - net: sch_generic: aviod concurrent reset and enqueue op for lockless qdisc (bsc#1183405). - net: sched: add barrier to ensure correct ordering for lockless qdisc (bsc#1183405). - net: sched: avoid unnecessary seqcount operation for lockless qdisc (bsc#1183405). - net: sched: fix packet stuck problem for lockless qdisc (bsc#1183405). - net: sched: fix tx action reschedule issue with stopped queue (bsc#1183405). - net: sched: fix tx action rescheduling issue during deactivation (bsc#1183405). - net: sched: replaced invalid qdisc tree flush helper in qdisc_replace (bsc#1183405). - net_sched: avoid resetting active qdisc for multiple times (bsc#1183405). - net_sched: get rid of unnecessary dev_qdisc_reset() (bsc#1183405). - net_sched: use qdisc_reset() in qdisc_destroy() (bsc#1183405). - nvme: add 'iopolicy' module parameter (bsc#1177599 bsc#1193096). - xfrm: fix MTU regression (bsc#1185377, bsc#1194048). Special Instructions and Notes: Please reboot the system after installing this update. Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the commandlisted for your product: - SUSE Manager Server 4.1: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.1-2022-365=1 - SUSE Manager Retail Branch Server 4.1: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch-Server-4.1-2022-365=1 - SUSE Manager Proxy 4.1: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.1-2022-365=1 - SUSE Linux Enterprise Server for SAP 15-SP2: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2022-365=1 - SUSE Linux Enterprise Server 15-SP2-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2022-365=1 - SUSE Linux Enterprise Server 15-SP2-BCL: zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-BCL-2022-365=1 - SUSE Linux Enterprise Realtime Extension 15-SP2: zypper in -t patch SUSE-SLE-Product-RT-15-SP2-2022-365=1 - SUSE Linux Enterprise Module for Live Patching 15-SP2: zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP2-2022-365=1 - SUSE Linux Enterprise Micro 5.0: zypper in -t patch SUSE-SUSE-MicroOS-5.0-2022-365=1 - SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2022-365=1 - SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-ESPOS-2022-365=1 - SUSE Linux Enterprise High Availability 15-SP2: zypper in -t patch SUSE-SLE-Product-HA-15-SP2-2022-365=1 - SUSE Enterprise Storage 7: zypper in -t patch SUSE-Storage-7-2022-365=1 Package List: - SUSE Manager Server 4.1 (ppc64le s390x x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 reiserfs-kmp-default-5.3.18-24.102.1 reiserfs-kmp-default-debuginfo-5.3.18-24.102.1 - SUSE Manager Server 4.1 (x86_64): kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 - SUSE Manager Server 4.1 (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 - SUSE Manager Retail Branch Server 4.1 (x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 reiserfs-kmp-default-5.3.18-24.102.1 reiserfs-kmp-default-debuginfo-5.3.18-24.102.1 - SUSE Manager Retail Branch Server 4.1 (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 - SUSE Manager Proxy 4.1 (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 - SUSE Manager Proxy 4.1 (x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 reiserfs-kmp-default-5.3.18-24.102.1 reiserfs-kmp-default-debuginfo-5.3.18-24.102.1 - SUSE Linux Enterprise Server for SAP 15-SP2 (ppc64le x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 reiserfs-kmp-default-5.3.18-24.102.1 reiserfs-kmp-default-debuginfo-5.3.18-24.102.1 - SUSE Linux Enterprise Server for SAP 15-SP2 (x86_64): kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 - SUSE Linux Enterprise Server for SAP 15-SP2 (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 - SUSE Linux Enterprise Server 15-SP2-LTSS (aarch64 ppc64le s390x x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 reiserfs-kmp-default-5.3.18-24.102.1 reiserfs-kmp-default-debuginfo-5.3.18-24.102.1 - SUSE Linux Enterprise Server 15-SP2-LTSS (aarch64 x86_64): kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 - SUSE Linux Enterprise Server 15-SP2-LTSS (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 - SUSE Linux Enterprise Server 15-SP2-BCL (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 - SUSE Linux Enterprise Server 15-SP2-BCL (x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 - SUSE Linux Enterprise Realtime Extension 15-SP2 (x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 - SUSE Linux Enterprise Realtime Extension 15-SP2 (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 - SUSE Linux Enterprise Module for Live Patching 15-SP2 (ppc64le s390x x86_64): kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-livepatch-5.3.18-24.102.1 kernel-default-livepatch-devel-5.3.18-24.102.1 kernel-livepatch-5_3_18-24_102-default-1-5.3.1 kernel-livepatch-5_3_18-24_102-default-debuginfo-1-5.3.1 kernel-livepatch-SLE15-SP2_Update_24-debugsource-1-5.3.1 - SUSE Linux Enterprise Micro 5.0 (aarch64 x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS (aarch64 x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-LTSS (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS (aarch64 x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 - SUSE Linux Enterprise High Performance Computing 15-SP2-ESPOS (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 - SUSE Linux Enterprise High Availability 15-SP2 (aarch64 ppc64le s390x x86_64): cluster-md-kmp-default-5.3.18-24.102.1 cluster-md-kmp-default-debuginfo-5.3.18-24.102.1 dlm-kmp-default-5.3.18-24.102.1 dlm-kmp-default-debuginfo-5.3.18-24.102.1 gfs2-kmp-default-5.3.18-24.102.1 gfs2-kmp-default-debuginfo-5.3.18-24.102.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 ocfs2-kmp-default-5.3.18-24.102.1 ocfs2-kmp-default-debuginfo-5.3.18-24.102.1 - SUSE Enterprise Storage 7 (aarch64 x86_64): kernel-default-5.3.18-24.102.1 kernel-default-base-5.3.18-24.102.1.9.48.1 kernel-default-debuginfo-5.3.18-24.102.1 kernel-default-debugsource-5.3.18-24.102.1 kernel-default-devel-5.3.18-24.102.1 kernel-default-devel-debuginfo-5.3.18-24.102.1 kernel-obs-build-5.3.18-24.102.1 kernel-obs-build-debugsource-5.3.18-24.102.1 kernel-preempt-5.3.18-24.102.1 kernel-preempt-debuginfo-5.3.18-24.102.1 kernel-preempt-debugsource-5.3.18-24.102.1 kernel-preempt-devel-5.3.18-24.102.1 kernel-preempt-devel-debuginfo-5.3.18-24.102.1 kernel-syms-5.3.18-24.102.1 reiserfs-kmp-default-5.3.18-24.102.1 reiserfs-kmp-default-debuginfo-5.3.18-24.102.1 - SUSE Enterprise Storage 7 (noarch): kernel-devel-5.3.18-24.102.1 kernel-docs-5.3.18-24.102.1 kernel-macros-5.3.18-24.102.1 kernel-source-5.3.18-24.102.1 References: https://www.suse.com/security/cve/CVE-2021-22600.html https://www.suse.com/security/cve/CVE-2021-39648.html https://www.suse.com/security/cve/CVE-2021-39657.html https://www.suse.com/security/cve/CVE-2021-45095.html https://www.suse.com/security/cve/CVE-2022-0330.html https://www.suse.com/security/cve/CVE-2022-0435.html https://www.suse.com/security/cve/CVE-2022-22942.html https://bugzilla.suse.com/1177599 https://bugzilla.suse.com/1183405 https://bugzilla.suse.com/1185377 https://bugzilla.suse.com/1188605 https://bugzilla.suse.com/1193096 https://bugzilla.suse.com/1193506 https://bugzilla.suse.com/1193861 https://bugzilla.suse.com/1193864 https://bugzilla.suse.com/1193867 https://bugzilla.suse.com/1194048 https://bugzilla.suse.com/1194227 https://bugzilla.suse.com/1194880 https://bugzilla.suse.com/1195009 https://bugzilla.suse.com/1195065 https://bugzilla.suse.com/1195184 https://bugzilla.suse.com/1195254 . Address urgent concerns within SUSE's Linux Kernel through this vital patch. Information on security threats and resolutions provided.. SUSE Kernel Security Patch, Critical Patch Update, Linux System Security. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Feb 10, 2022 Critical SuSE
172

Ubuntu 16.04 LTS USN-3632-1 Critical Azure Kernel Threats

Several security issues were fixed in the Linux kernel.. =========================================================================Ubuntu Security Notice USN-3632-1 April 24, 2018 linux-azure vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux-azure: Linux kernel for Microsoft Azure Cloud systems Details: It was discovered that a race condition leading to a use-after-free vulnerability existed in the ALSA PCM subsystem of the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2017-0861) It was discovered that the KVM implementation in the Linux kernel allowed passthrough of the diagnostic I/O port 0x80. An attacker in a guest VM could use this to cause a denial of service (system crash) in the host OS. (CVE-2017-1000407) It was discovered that a use-after-free vulnerability existed in the network namespaces implementation in the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2017-15129) It was discovered that the HugeTLB component of the Linux kernel did not properly handle holes in hugetlb ranges. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2017-16994) It was discovered that the netfilter component of the Linux did not properly restrict access to the connection tracking helpers list. A local attacker could use this to bypass intended access restrictions. (CVE-2017-17448) It was discovered that the netfilter passive OS fingerprinting (xt_osf) module did not properly perform access control checks. A local attacker could improperly modify the system-wide OS fingerprint list. (CVE-2017-17450) Dmitry Vyukov discovered that the KVMimplementation in the Linux kernel contained an out-of-bounds read when handling memory-mapped I/O. A local attacker could use this to expose sensitive information. (CVE-2017-17741) It was discovered that the Salsa20 encryption algorithm implementations in the Linux kernel did not properly handle zero-length inputs. A local attacker could use this to cause a denial of service (system crash). (CVE-2017-17805) It was discovered that the HMAC implementation did not validate the state of the underlying cryptographic hash algorithm. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2017-17806) It was discovered that the keyring implementation in the Linux kernel did not properly check permissions when a key request was performed on a task's default keyring. A local attacker could use this to add keys to unauthorized keyrings. (CVE-2017-17807) It was discovered that the Broadcom NetXtremeII ethernet driver in the Linux kernel did not properly validate Generic Segment Offload (GSO) packet sizes. An attacker could use this to cause a denial of service (interface unavailability). (CVE-2018-1000026) It was discovered that the Reliable Datagram Socket (RDS) implementation in the Linux kernel contained an out-of-bounds write during RDMA page allocation. An attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2018-5332) Mohamed Ghannam discovered a null pointer dereference in the RDS (Reliable Datagram Sockets) protocol implementation of the Linux kernel. A local attacker could use this to cause a denial of service (system crash). (CVE-2018-5333) ??? discovered that a race condition existed in loop block device implementation in the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2018-5344) It was discovered that the Broadcom UniMAC MDIO bus controller driver in the Linuxkernel did not properly validate device resources. A local attacker could use this to cause a denial of service (system crash). (CVE-2018-8043) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS: linux-image-4.13.0-1014-azure 4.13.0-1014.17 linux-image-azure 4.13.0.1014.16 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-3632-1 CVE-2017-0861, CVE-2017-1000407, CVE-2017-15129, CVE-2017-16994, CVE-2017-17448, CVE-2017-17450, CVE-2017-17741, CVE-2017-17805, CVE-2017-17806, CVE-2017-17807, CVE-2018-1000026, CVE-2018-5332, CVE-2018-5333, CVE-2018-5344, CVE-2018-8043 Package Information: https://launchpad.net/ubuntu/+source/linux-azure/4.13.0-1014.17 . Numerous weaknesses in the linux-azure kernel pose significant security threats. Upgrade immediately to safeguard your system.. Azure Kernel Threats, Ubuntu Security Issues, Linux Kernel Updates. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Apr 24, 2018 Critical Ubuntu
172

Ubuntu 14.04 LTS USN-2778-1 Critical: Kernel Memory Corruption Threats

Several security issues were fixed in the kernel.. =========================================================================Ubuntu Security Notice USN-2778-1 October 20, 2015 linux-lts-vivid vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 14.04 LTS Summary: Several security issues were fixed in the kernel. Software Description: - linux-lts-vivid: Linux hardware enablement kernel from Vivid Details: It was discovered that the Linux kernel did not check if a new IPv6 MTU set by a user space application was valid. A remote attacker could forge a route advertisement with an invalid MTU that a user space daemon like NetworkManager would honor and apply to the kernel, causing a denial of service. (CVE-2015-0272) It was discovered that virtio networking in the Linux kernel did not handle fragments correctly, leading to kernel memory corruption. A remote attacker could use this to cause a denial of service (system crash) or possibly execute code with administrative privileges. (CVE-2015-5156) It was discovered that the Reliable Datagram Sockets (RDS) implementation in the Linux kernel did not verify sockets were properly bound before attempting to send a message, which could cause a NULL pointer dereference. An attacker could use this to cause a denial of service (system crash). (CVE-2015-6937) Ben Hutchings discovered that the Advanced Union Filesystem (aufs) for the Linux kernel did not correctly handle references of memory mapped files from an aufs mount. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code with administrative privileges. (CVE-2015-7312) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 LTS: linux-image-3.19.0-31-generic 3.19.0-31.36~14.04.1 linux-image-3.19.0-31-generic-lpae 3.19.0-31.36~14.04.1 linux-image-3.19.0-31-lowlatency 3.19.0-31.36~14.04.1 linux-image-3.19.0-31-powerpc-e500mc 3.19.0-31.36~14.04.1 linux-image-3.19.0-31-powerpc-smp 3.19.0-31.36~14.04.1 linux-image-3.19.0-31-powerpc64-emb 3.19.0-31.36~14.04.1 linux-image-3.19.0-31-powerpc64-smp 3.19.0-31.36~14.04.1 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. If you use linux-restricted-modules, you have to update that package as well to get modules which work with the new kernel version. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-server, linux-powerpc), a standard system upgrade will automatically perform this as well. References: CVE-2015-0272, CVE-2015-5156, CVE-2015-6937, CVE-2015-7312 Package Information: https://launchpad.net/ubuntu/+source/linux-lts-vivid/3.19.0-31.36~14.04.1 . =========================================================================Ubuntu Security Notice USN-. security, kernel, ==================================================. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Oct 20, 2015 Critical Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200