• Kernel Live Patch Security Notice LNS-0092-1

    From Security Bot@2:467/4.444 to All on Sun Sep 24 19:22:00 2023


    Kernel Live Patch Security Notice LNS-0092-1

    Kyle Zeng discovered that the sysctl implementation in the Linux kernel contained a stack-based buffer overflow. A local attacker could use this
    to cause a denial of service (system crash) or execute arbitrary code.
    Tamás Koczka discovered that the Bluetooth L2CAP handshake implementation
    in the Linux kernel contained multiple use-after-free vulnerabilities. A physically proximate attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. It was discovered that
    the NFSD implementation in the Linux kernel did not properly handle some
    RPC messages, leading to a buffer overflow. A remote attacker could use
    this to cause a denial of service (system crash) or possibly execute
    arbitrary code.

    https://packetstormsecurity.com/files/171289/LSN-0092-1.txt

    Wed, 08 Mar 2023 15:54:44 GMT
    ________________________________
    --- The information is for inforamtional purposes only.
    * Origin: Read us with http://winpoint.org JID: rs@captflint.com (2:467/4.444)