ALT-PU-2017-2209-1
Package kernel-image-un-def updated to version 4.13.2-alt1 for branch sisyphus in task 188197.
Closed vulnerabilities
BDU:2017-02053
Уязвимость компонента модуля L2CAP пакета программ, реализующих стек протоколов Bluetooth, позволяющая нарушителю выполнить произвольный код
Modified: 2025-04-20
CVE-2017-1000251
The native Bluetooth stack in the Linux Kernel (BlueZ), starting at the Linux kernel version 2.6.32 and up to and including 4.13.1, are vulnerable to a stack overflow vulnerability in the processing of L2CAP configuration responses resulting in Remote code execution in kernel space.
- http://nvidia.custhelp.com/app/answers/detail/a_id/4561
- http://www.debian.org/security/2017/dsa-3981
- http://www.securityfocus.com/bid/100809
- http://www.securitytracker.com/id/1039373
- https://access.redhat.com/errata/RHSA-2017:2679
- https://access.redhat.com/errata/RHSA-2017:2680
- https://access.redhat.com/errata/RHSA-2017:2681
- https://access.redhat.com/errata/RHSA-2017:2682
- https://access.redhat.com/errata/RHSA-2017:2683
- https://access.redhat.com/errata/RHSA-2017:2704
- https://access.redhat.com/errata/RHSA-2017:2705
- https://access.redhat.com/errata/RHSA-2017:2706
- https://access.redhat.com/errata/RHSA-2017:2707
- https://access.redhat.com/errata/RHSA-2017:2731
- https://access.redhat.com/errata/RHSA-2017:2732
- https://access.redhat.com/security/vulnerabilities/blueborne
- https://github.com/torvalds/linux/commit/f2fcfcd670257236ebf2088bbdf26f6a8ef459fe
- https://www.armis.com/blueborne
- https://www.exploit-db.com/exploits/42762/
- https://www.kb.cert.org/vuls/id/240311
- https://www.synology.com/support/security/Synology_SA_17_52_BlueBorne
- http://nvidia.custhelp.com/app/answers/detail/a_id/4561
- http://www.debian.org/security/2017/dsa-3981
- http://www.securityfocus.com/bid/100809
- http://www.securitytracker.com/id/1039373
- https://access.redhat.com/errata/RHSA-2017:2679
- https://access.redhat.com/errata/RHSA-2017:2680
- https://access.redhat.com/errata/RHSA-2017:2681
- https://access.redhat.com/errata/RHSA-2017:2682
- https://access.redhat.com/errata/RHSA-2017:2683
- https://access.redhat.com/errata/RHSA-2017:2704
- https://access.redhat.com/errata/RHSA-2017:2705
- https://access.redhat.com/errata/RHSA-2017:2706
- https://access.redhat.com/errata/RHSA-2017:2707
- https://access.redhat.com/errata/RHSA-2017:2731
- https://access.redhat.com/errata/RHSA-2017:2732
- https://access.redhat.com/security/vulnerabilities/blueborne
- https://github.com/torvalds/linux/commit/f2fcfcd670257236ebf2088bbdf26f6a8ef459fe
- https://www.armis.com/blueborne
- https://www.exploit-db.com/exploits/42762/
- https://www.kb.cert.org/vuls/id/240311
- https://www.synology.com/support/security/Synology_SA_17_52_BlueBorne
Modified: 2025-04-20
CVE-2017-14340
The XFS_IS_REALTIME_INODE macro in fs/xfs/xfs_linux.h in the Linux kernel before 4.13.2 does not verify that a filesystem has a realtime device, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via vectors related to setting an RHINHERIT flag on a directory.
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=b31ff3cdf540110da4572e3e29bd172087af65cc
- http://seclists.org/oss-sec/2017/q3/436
- http://www.debian.org/security/2017/dsa-3981
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.13.2
- http://www.securityfocus.com/bid/100851
- https://access.redhat.com/errata/RHSA-2017:2918
- https://bugzilla.redhat.com/show_bug.cgi?id=1491344
- https://github.com/torvalds/linux/commit/b31ff3cdf540110da4572e3e29bd172087af65cc
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=b31ff3cdf540110da4572e3e29bd172087af65cc
- http://seclists.org/oss-sec/2017/q3/436
- http://www.debian.org/security/2017/dsa-3981
- http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.13.2
- http://www.securityfocus.com/bid/100851
- https://access.redhat.com/errata/RHSA-2017:2918
- https://bugzilla.redhat.com/show_bug.cgi?id=1491344
- https://github.com/torvalds/linux/commit/b31ff3cdf540110da4572e3e29bd172087af65cc