|
|
| |
|
| |
kernel: multiple vulnerabilities
| Package(s): | kernel |
CVE #(s): | CVE-2013-1767
CVE-2013-1774
|
| Created: | March 4, 2013 |
Updated: | March 22, 2013 |
| Description: |
From the Mageia advisory:
Linux kernel is prone to a local privilege-escalation vulnerability
due to a tmpfs use-after-free error.
Local attackers can exploit the issue to execute arbitrary code with
kernel privileges or to crash the kernel, effectively denying service
to legitimate users (CVE-2013-1767).
Linux kernel built with Edgeport USB serial converter driver io_ti,
is vulnerable to a NULL pointer dereference flaw. It happens if the
device is disconnected while corresponding /dev/ttyUSB? file is in use.
An unprivileged user could use this flaw to crash the system, resulting
DoS (CVE-2013-1774). |
| Alerts: |
|
( Log in to post comments)
|
|
|