Canonical has released a new Linux kernel live patch for its Ubuntu 20.04 LTS and Ubuntu 18.04 LTS OS series to address a single security vulnerability in Linux kernel’s Shiftfs out-of-tree stacking file system, which could have allowed a local attacker to cause a denial of service (memory exhaustion) or gain root privileges by executing arbitrary code. . This new Linux kernel live patch security update comes hot on the heels of the latest Linux kernel security updates released by Canonical last week for all supported Ubuntu Linux releases. It’s available for users of the Ubuntu 20.04 LTS (Focal Fossa) and Ubuntu 18.04 LTS (Bionic Beaver) operating systems who use the Canonical Livepatch Service for rebootless kernel updates and fixes a single security vulnerability. The link for this article located at 9 to 5 Linux is no longer available. . Canonical has released a kernel patch for Ubuntu 20.04 and 18.04 to fix a critical security vulnerability. Download it now to secure your system. Ubuntu Kernel Patch, Canonical Livepatch, Linux Kernel Security. . LinuxSecurity.com Team
X-windows, with or without the font server (XFS) running can be crashed remotely via Mozilla when fonts are set to an unnaturally large size with CSS (Cascading Style Sheets), Tom Vogt of lemuria.org has reported.. . .. X-windows, with or without the font server (XFS) running can be crashed remotely via Mozilla when fonts are set to an unnaturally large size with CSS (Cascading Style Sheets), Tom Vogt of lemuria.org has reported. An X bug allows all available memory to be consumed, which causes the system to freeze. The behavior can be duplicated with applications like the Gimp, we're told, but these aren't remotely exploitable. But with Mozilla, a pest can easily set up a malicious Web site which will crash unsuspecting Tuxers' boxen and cause any unsaved data in open apps to go away. See the Mozilla: Remote DoS vulnerability on LinuxSecurity. . The X-Window system is vulnerable to remote exploitation through Firefox when font sizes are manipulated to extreme dimensions, creating a serious security risk.. X-windows DoS, Remote Crash, Memory Exhaustion Attack, Mozilla Vulnerability. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.