Ubuntu 10.10 : linux-mvl-dove vulnerabilities (USN-1328-1)

Ubuntu Security Notice (C) 2012-2013 Canonical, Inc. / NASL script (C) 2012-2013 Tenable Network Security, Inc.

Synopsis :

The remote Ubuntu host is missing a security-related patch.

Description :

Clement Lecigne discovered a bug in the HFS filesystem. A local
attacker could exploit this to cause a kernel oops. (CVE-2011-2203)

A flaw was found in how the Linux kernel handles user-defined key
types. An unprivileged local user could exploit this to crash the
system. (CVE-2011-4110).

Solution :

Update the affected linux-image-2.6.32-422-dove package.

Risk factor :

Low / CVSS Base Score : 2.1
CVSS Temporal Score : 1.8
Public Exploit Available : false

Family: Ubuntu Local Security Checks

Nessus Plugin ID: 57532 ()

Bugtraq ID: 48236

CVE ID: CVE-2011-2203