Ubuntu Security Notice (C) 2013 Canonical, Inc. / NASL script (C) 2013 Tenable Network Security, Inc.
The remote Ubuntu host is missing one or more security-related
USN-1700-1 fixed vulnerabilities in the Linux kernel. Due to an
unrelated regression inotify/fanotify stopped working after
upgrading. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
A flaw was discovered in the Linux kernel's handling of script
execution when module loading is enabled. A local attacker could
exploit this flaw to cause a leak of kernel stack contents.
Florian Weimer discovered that hypervkvpd, which is distributed in
the Linux kernel, was not correctly validating source addresses of
netlink packets. An untrusted local user can cause a denial of
service by causing hypervkvpd to exit. (CVE-2012-5532)
See also :
Update the affected package(s).
Risk factor :
Medium / CVSS Base Score : 4.9