Errata ID | 497 |
---|---|
Date | 2018-01-31 |
Source package | univention-kernel-image-signed |
Fixed in version | 3.0.2-15A~4.2.0.201801290947 |
Description | This update of the Linux kernel to version 4.9.78 addresses the following issues: * Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis (CVE-2017-5715) * kvm: stack-based out-of-bounds read via vmcall instruction (CVE-2017-17741) * Stack information leak in the EFS element (CVE-2017-1000410) |
Additional notes | This is the second of three parts. |
CVE ID | CVE-2017-5715 CVE-2017-17741 CVE-2017-1000410 |
UCS Bug number | #46188 |