Ubuntu Security Notice 2804-1 – Ben Serebrin discovered that the KVM hypervisor implementation in the Linux kernel did not properly catch Alignment Check exceptions. An attacker in a guest virtual machine could use this to cause a denial of service (system crash) in the host OS.
Monthly Archives: November 2015
Ubuntu Security Notice USN-2801-1
Ubuntu Security Notice 2801-1 – Ben Serebrin discovered that the KVM hypervisor implementation in the Linux kernel did not properly catch Alignment Check exceptions. An attacker in a guest virtual machine could use this to cause a denial of service (system crash) in the host OS.
Red Hat Security Advisory 2015-2019-01
Red Hat Security Advisory 2015-2019-01 – The System Security Services Daemon service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch and the Pluggable Authentication Modules interfaces toward the system, and a pluggable back-end system to connect to multiple different account sources. It was found that SSSD’s Privilege Attribute Certificate responder plug-in would leak a small amount of memory on each authentication request. A remote attacker could potentially use this flaw to exhaust all available memory on the system by making repeated requests to a Kerberized daemon application configured to authenticate using the PAC responder plug-in.
Linux Ransomware Debut Fails On Predictable Encryption Key
A Quick Look At A Signed Spam Campaign
Adobe Flash Update Includes Patches for 17 Vulnerabilities
Adobe patched 17 critical remote code execution vulnerabilities in Flash Player.