Unity Linux 20.1060a / 20.1070a Security Update: kernel (UTSA-2026-002497)

medium Nessus Plugin ID 287602

Synopsis

The Unity Linux host is missing one or more security updates.

Description

The Unity Linux 20 host has a package installed that is affected by a vulnerability as referenced in the UTSA-2026-002497 advisory.

The d_walk function in fs/dcache.c in the Linux kernel through 3.17.2 does not properly maintain the semantics of rename_lock, which allows local users to cause a denial of service (deadlock and system hang) via a crafted application.

Tenable has extracted the preceding description block directly from the Unity Linux security advisory.

Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.

Solution

Update the affected kernel package.

See Also

http://www.nessus.org/u?e4b5ff76

http://www.nessus.org/u?e29b16fa

http://www.nessus.org/u?a205692b

http://www.nessus.org/u?b2cd2c2a

http://www.nessus.org/u?f0ab19d3

http://www.nessus.org/u?a67ba2b0

http://www.nessus.org/u?5c7f4066

http://rhn.redhat.com/errata/RHSA-2015-1976.html

http://rhn.redhat.com/errata/RHSA-2015-1978.html

http://secunia.com/advisories/62801

http://www.debian.org/security/2015/dsa-3170

http://www.openwall.com/lists/oss-security/2014/10/30/7

http://www.nessus.org/u?62b02229

http://www.securityfocus.com/bid/70854

http://www.securitytracker.com/id/1034051

http://www.ubuntu.com/usn/USN-2492-1

http://www.ubuntu.com/usn/USN-2493-1

http://www.ubuntu.com/usn/USN-2515-1

http://www.ubuntu.com/usn/USN-2516-1

http://www.ubuntu.com/usn/USN-2517-1

http://www.ubuntu.com/usn/USN-2518-1

https://bugzilla.redhat.com/show_bug.cgi?id=1159313

http://www.nessus.org/u?a55e6c2e

http://www.nessus.org/u?40255767

https://lkml.org/lkml/2014/10/25/171

https://lkml.org/lkml/2014/10/25/179

https://lkml.org/lkml/2014/10/25/180

https://lkml.org/lkml/2014/10/26/101

https://lkml.org/lkml/2014/10/26/116

https://lkml.org/lkml/2014/10/26/128

https://lkml.org/lkml/2014/10/26/129

https://security-tracker.debian.org/tracker/CVE-2014-8559

https://support.f5.com/csp/article/K05211147

Plugin Details

Severity: Medium

ID: 287602

File Name: unity_linux_UTSA-2026-002497.nasl

Version: 1.1

Type: local

Published: 1/15/2026

Updated: 1/15/2026

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.4

CVSS v2

Risk Factor: Medium

Base Score: 4.9

Temporal Score: 3.8

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C

CVSS Score Source: CVE-2014-8559

CVSS v3

Risk Factor: Medium

Base Score: 5.5

Temporal Score: 5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

Required KB Items: Host/local_checks_enabled, Host/UOS-Server/release, Host/UOS-Server/rpm-list, Host/cpu

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 1/15/2026

Vulnerability Publication Date: 10/30/2014

Reference Information

CVE: CVE-2014-8559