| |||||||||||||
| Test Kennung: | 1.3.6.1.4.1.25623.1.0.71068 |
| Kategorie: | Ubuntu Local Security Checks |
| Titel: | Ubuntu USN-1337-1 (linux-image-2.6.38-13-generic) |
| Zusammenfassung: | Ubuntu USN-1337-1 (linux-image-2.6.38-13-generic) |
| Beschreibung: | The remote host is missing an update to linux-image-2.6.38-13-generic announced via advisory USN-1337-1. Details: Peter Huewe discovered an information leak in the handling of reading security-related TPM data. A local, unprivileged user could read the results of a previous TPM command. (CVE-2011-1162) Clement Lecigne discovered a bug in the HFS filesystem. A local attacker could exploit this to cause a kernel oops. (CVE-2011-2203) A flaw was found in how the Linux kernel handles user-defined key types. An unprivileged local user could exploit this to crash the system. (CVE-2011-4110) Solution: The problem can be corrected by updating your system to the following package versions: Ubuntu 10.04 LTS: linux-image-2.6.38-13-generic 2.6.38-13.54~ lucid1 linux-image-2.6.38-13-generic-pae 2.6.38-13.54~ lucid1 linux-image-2.6.38-13-server 2.6.38-13.54~ lucid1 linux-image-2.6.38-13-virtual 2.6.38-13.54~ lucid1 http://www.securityspace.com/smysecure/catid.html?in=USN-1337-1 |
| Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2011-1162 BugTraq ID: 50764 http://www.securityfocus.com/bid/50764 Common Vulnerability Exposure (CVE) ID: CVE-2011-2203 https://lkml.org/lkml/2011/6/8/154 http://www.openwall.com/lists/oss-security/2011/06/13/16 http://www.ubuntu.com/usn/USN-1324-1 http://www.ubuntu.com/usn/USN-1328-1 http://www.ubuntu.com/usn/USN-1344-1 BugTraq ID: 48236 http://www.securityfocus.com/bid/48236 http://secunia.com/advisories/47754 Common Vulnerability Exposure (CVE) ID: CVE-2011-4110 https://lkml.org/lkml/2011/11/15/363 http://www.openwall.com/lists/oss-security/2011/11/21/19 http://www.openwall.com/lists/oss-security/2011/11/22/6 http://www.openwall.com/lists/oss-security/2011/11/22/5 BugTraq ID: 50755 http://www.securityfocus.com/bid/50755 |
| Copyright | Copyright (c) 2012 E-Soft Inc. http://www.securityspace.com |
| Dies ist nur einer von 32582 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |
|