Ubuntu 12.04 LTS : linux-lts-quantal vulnerability (USN-1749-1)

Ubuntu Security Notice (C) 2013-2015 Canonical, Inc. / NASL script (C) 2013-2015 Tenable Network Security, Inc.

Synopsis :

The remote Ubuntu host is missing a security-related patch.

Description :

Mathias Krause discovered a bounds checking error for netlink messages
requesting SOCK_DIAG_BY_FAMILY. An unprivileged local user could
exploit this flaw to crash the system or run programs as an

Solution :

Update the affected linux-image-3.5.0-25-generic package.

Risk factor :

High / CVSS Base Score : 7.2
CVSS Temporal Score : 6.0
Public Exploit Available : true

Family: Ubuntu Local Security Checks

Nessus Plugin ID: 64909 ()

Bugtraq ID: 58137

CVE ID: CVE-2013-1763