| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.71009 |
| Category: | Ubuntu Local Security Checks |
| Title: | Ubuntu USN-1269-1 (linux-image-2.6.32-340-ec2) |
| Summary: | Ubuntu USN-1269-1 (linux-image-2.6.32-340-ec2) |
| Description: | The remote host is missing an update to linux-image-2.6.32-340-ec2 announced via advisory USN-1269-1. Details: Vasily Averin discovered that the NFS Lock Manager (NLM) incorrectly handled unlock requests. A local attacker could exploit this to cause a denial of service. (CVE-2011-2491) Robert Swiecki discovered that mapping extensions were incorrectly handled. A local attacker could exploit this to crash the system, leading to a denial of service. (CVE-2011-2496) It was discovered that the wireless stack incorrectly verified SSID lengths. A local attacker could exploit this to cause a denial of service or gain root privileges. (CVE-2011-2517) Ben Pfaff discovered that Classless Queuing Disciplines (qdiscs) were being incorrectly handled. A local attacker could exploit this to crash the system, leading to a denial of service. (CVE-2011-2525) Solution: The problem can be corrected by updating your system to the following package versions: Ubuntu 10.04 LTS: linux-image-2.6.32-340-ec2 2.6.32-340.40 http://www.securityspace.com/smysecure/catid.html?in=USN-1269-1 |
| Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2011-2491 Common Vulnerability Exposure (CVE) ID: CVE-2011-2496 http://www.openwall.com/lists/oss-security/2011/06/27/2 Common Vulnerability Exposure (CVE) ID: CVE-2011-2517 http://www.openwall.com/lists/oss-security/2011/07/01/4 Common Vulnerability Exposure (CVE) ID: CVE-2011-2525 http://kerneltrap.org/mailarchive/linux-netdev/2010/5/21/6277805 http://openwall.com/lists/oss-security/2011/07/12/1 |
| Copyright | Copyright (c) 2012 E-Soft Inc. http://www.securityspace.com |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|