All errata/t7/ALT-PU-2015-1930-1
ALT-PU-2015-1930-1

Package update kernel-image-std-def in branch t7

Version3.14.56-alt0.M70P.1
Published2015-10-29
Max severityHIGH
Severity:

Closed issues (1)

CVE-2015-8019
HIGH7.8

The skb_copy_and_csum_datagram_iovec function in net/core/datagram.c in the Linux kernel 3.14.54 and 3.18.22 does not accept a length argument, which allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact via a write system call followed by a recvmsg system call.

Published: 2016-05-02Modified: 2025-04-12
CVSS 2.0HIGH 7.2
CVSS:2.0/AV:L/AC:L/Au:N/C:C/I:C/A:C
CVSS 3.xHIGH 7.8
CVSS:3.x/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H