| Secunia ID |
SA50633
|
| CVE-ID |
CVE-2012-2745, CVE-2012-3412, CVE-2012-3430, CVE-2012-3511
|
| Release Date |
20 Sep 2012
|
| Criticality |
Less Critical
Typically used for cross-site scripting vulnerabilities and privilege escalation vulnerabilities.
This rating is also used for vulnerabilities allowing exposure of sensitive data to local users.
|
| Solution Status |
Vendor Patch
|
| Where |
From local network
"From local network" describes vulnerabilities where the attack vector requires that an attacker is situated on the same network as a vulnerable system (not necessarily a LAN).
This category covers vulnerabilities in certain services (e.g. DHCP, RPC, administrative services) that should not be accessible from the Internet, but only from a local network and optionally a restricted set of external systems.
|
| Impact |
DoS (Denial of Service)
This includes vulnerabilities ranging from excessive resource consumption (e.g. causing a system to use a lot of memory) to crashing an application or an entire system.
|
| Description |
Ubuntu has issued an update for the kernel. This fixes some vulnerabilities, which can be exploited by malicious, local users and malicious people to cause a DoS (Denial of Service). For more information: SA49778 (#2) SA50081 SA50310
|
| Solution |
Apply updated packages. -- Ubuntu 10.04 LTS -- https://launchpad.net/ubuntu/+source/linux-lts-backport-natty/2.6.38-16.67~lucid1
|
| Original Advisory |
USN-1574-1: http://www.ubuntu.com/usn/usn-1574-1
|