CVE-2015-5364
published 2015-08-31CVE-2015-5364: The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote…
PriorityP339high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
6.27%
92.8th percentile
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP packet flood.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | linux | < linux 4.0.7-1 (bookworm) | linux 4.0.7-1 (bookworm) |
| android | — | — | |
| linux | linux_kernel | < 3.2.70 | 3.2.70 |
| linux | linux_kernel | <= 4.0.5 | — |
| linux | linux_kernel | >= 0 < 4.0.7-1 | 4.0.7-1 |
| linux | linux_kernel | >= 0 < 4.0.7-1 | 4.0.7-1 |
| linux | linux_kernel | >= 0 < 4.0.7-1 | 4.0.7-1 |
| linux | linux_kernel | >= 0 < 4.0.7-1 | 4.0.7-1 |
| linux | linux_kernel | >= 0 < 3.13.0-58.97 | 3.13.0-58.97 |
| linux | linux_kernel | >= 3.11 < 3.12.44 | 3.12.44 |
| linux | linux_kernel | >= 3.13 < 3.14.45 | 3.14.45 |
| linux | linux_kernel | >= 3.15 < 3.16.35 | 3.16.35 |
| linux | linux_kernel | >= 3.17 < 3.18.17 | 3.18.17 |
| linux | linux_kernel | >= 3.19 < 4.0.6 | 4.0.6 |
| linux | linux_kernel | >= 3.3 < 3.4.109 | 3.4.109 |
| linux | linux_kernel | >= 3.5 < 3.10.81 | 3.10.81 |
| paloalto | pan-os | — | — |
| redhat | enterprise_linux_server_aus | — | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xx3c-35rv-h773: The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4
ghsa_unreviewed·2022-05-14
CVE-2015-5364 [HIGH] GHSA-xx3c-35rv-h773: The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP packet flood.
GHSA
GHSA-2p7j-hg9j-vpj2: The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4
ghsa_unreviewed·2022-05-14·CVSS 7.8
CVE-2015-5366 [HIGH] GHSA-2p7j-hg9j-vpj2: The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 provide inappropriate -EAGAIN return values, which allows remote attackers to cause a denial of service (EPOLLET epoll application read outage) via an incorrect checksum in a UDP packet, a different vulnerability than CVE-2015-5364.
OSV
CVE-2015-5366: The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4
osv·2015-08-31·CVSS 7.8
CVE-2015-5366 [HIGH] CVE-2015-5366: The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 provide inappropriate -EAGAIN return values, which allows remote attackers to cause a denial of service (EPOLLET epoll application read outage) via an incorrect checksum in a UDP packet, a different vulnerability than CVE-2015-5364.
OSV
CVE-2015-5364: The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4
osv·2015-08-31·CVSS 7.8
CVE-2015-5364 [HIGH] CVE-2015-5364: The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP packet flood.
OSV
linux-lts-utopic vulnerabilities
osv·2015-07-23·CVSS 4.9
CVE-2015-4692 [MEDIUM] linux-lts-utopic vulnerabilities
linux-lts-utopic vulnerabilities
A flaw was discovered in the kvm (kernel virtual machine) subsystem's
kvm_apic_has_events function. A unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-4692)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker could exploit this flaw to cause a denial of
service using a flood of UDP packets with invalid checksums.
(CVE-2015-5364)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker can cause a denial of service against
applications that use epoll by injecting a single packet with an invalid
checksum. (CVE-2015-5366)
OSV
linux-lts-vivid vulnerabilities
osv·2015-07-23·CVSS 4.9
CVE-2015-4692 [MEDIUM] linux-lts-vivid vulnerabilities
linux-lts-vivid vulnerabilities
A flaw was discovered in the kvm (kernel virtual machine) subsystem's
kvm_apic_has_events function. A unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-4692)
Daniel Borkmann reported a kernel crash in the Linux kernel's BPF filter
JIT optimization. A local attacker could exploit this flaw to cause a
denial of service (system crash). (CVE-2015-4700)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker could exploit this flaw to cause a denial of
service using a flood of UDP packets with invalid checksums.
(CVE-2015-5364)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker can cause a denial of service against
applicatio
OSV
linux vulnerabilities
osv·2015-07-23·CVSS 7.2
CVE-2015-1805 [HIGH] linux vulnerabilities
linux vulnerabilities
A flaw was discovered in the user space memory copying for the pipe iovecs
in the Linux kernel. An unprivileged local user could exploit this flaw to
cause a denial of service (system crash) or potentially escalate their
privileges. (CVE-2015-1805)
A flaw was discovered in the kvm (kernel virtual machine) subsystem's
kvm_apic_has_events function. A unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-4692)
Daniel Borkmann reported a kernel crash in the Linux kernel's BPF filter
JIT optimization. A local attacker could exploit this flaw to cause a
denial of service (system crash). (CVE-2015-4700)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker could exploit this flaw to
Palo Alto
PAN-SA-2016-0025 Kernel Vulnerabilities
vendor_paloalto·2016-10-04·CVSS 7.8
CVE-2015-5364 [HIGH] CWE-399 PAN-SA-2016-0025 Kernel Vulnerabilities
PAN-SA-2016-0025 Kernel Vulnerabilities
The kernel in use by the Management Plane of PAN-OS is vulnerable to CVE-2015-5364 and CVE-2015-5366. (Ref # PAN-52379/87408) The CVSS Score of CVE-2015-5364 is 7.8, High; while the CVSS Score of CVE-2015-5366 is 5.0, Medium. Those could lead to a Denial of Service attack. This issue affects PAN-OS 5.0.19 and earlier; PAN-OS 5.1.12 and earlier; PAN-OS 6.0.14 and earlier; PAN-OS 6.1.14 and earlier; PAN-OS 7.0.10 and earlier; PAN-OS 7.1.4 and earlier CVE CVSS Summary CVE-2015-5364 7.8 AV:N/AC:L/Au:N/C:N/I:N/A:C The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP pa
Android
CVE-2015-5364: Android Security Bulletin 2016-09-01
CVE: CVE-2015-5364
Severity: HIGH
References: A-29507402
Upstream
kernel
vendor_android·2016-09-01·CVSS 7.8
CVE-2015-5364 [HIGH] CVE-2015-5364: Android Security Bulletin 2016-09-01
CVE: CVE-2015-5364
Severity: HIGH
References: A-29507402
Upstream
kernel
Android Security Bulletin 2016-09-01
CVE: CVE-2015-5364
Severity: HIGH
References: A-29507402
Upstream
kernel
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2015-08-18·CVSS 4.9
CVE-2015-3212 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Marcelo Ricardo Leitner discovered a race condition in the Linux kernel's
SCTP address configuration lists when using Address Configuration Change
(ASCONF) options on a socket. An unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-3212)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker could exploit this flaw to cause a denial of
service using a flood of UDP packets with invalid checksums.
(CVE-2015-5364)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker can cause a denial of service against
applications that use epoll by injecting a single packet with
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2015-08-18·CVSS 4.9
CVE-2015-3212 [MEDIUM] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Marcelo Ricardo Leitner discovered a race condition in the Linux kernel's
SCTP address configuration lists when using Address Configuration Change
(ASCONF) options on a socket. An unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-3212)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker could exploit this flaw to cause a denial of
service using a flood of UDP packets with invalid checksums.
(CVE-2015-5364)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker can cause a denial of service against
applications that use epoll by injecting a single pack
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2015-07-24·CVSS 4.9
CVE-2015-4692 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the kvm (kernel virtual machine) subsystem's
kvm_apic_has_events function. A unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-4692)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker could exploit this flaw to cause a denial of
service using a flood of UDP packets with invalid checksums.
(CVE-2015-5364)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker can cause a denial of service against
applications that use epoll by injecting a single packet with an invalid
checksum. (CVE-2015-5366)
Instructions: After a standard system up
Ubuntu
Linux kernel (Utopic HWE) vulnerabilities
vendor_ubuntu·2015-07-23·CVSS 4.9
CVE-2015-4692 [MEDIUM] Linux kernel (Utopic HWE) vulnerabilities
Title: Linux kernel (Utopic HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the kvm (kernel virtual machine) subsystem's
kvm_apic_has_events function. A unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-4692)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker could exploit this flaw to cause a denial of
service using a flood of UDP packets with invalid checksums.
(CVE-2015-5364)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker can cause a denial of service against
applications that use epoll by injecting a single packet with an invalid
checksum. (CVE-2015-5366)
Instructions: After a stand
Ubuntu
Linux kernel (Trusty HWE) vulnerabilities
vendor_ubuntu·2015-07-23·CVSS 7.2
CVE-2015-1805 [HIGH] Linux kernel (Trusty HWE) vulnerabilities
Title: Linux kernel (Trusty HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the user space memory copying for the pipe iovecs
in the Linux kernel. An unprivileged local user could exploit this flaw to
cause a denial of service (system crash) or potentially escalate their
privileges. (CVE-2015-1805)
A flaw was discovered in the kvm (kernel virtual machine) subsystem's
kvm_apic_has_events function. A unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-4692)
Daniel Borkmann reported a kernel crash in the Linux kernel's BPF filter
JIT optimization. A local attacker could exploit this flaw to cause a
denial of service (system crash). (CVE-2015-4700)
A flaw was discovered in how the L
Ubuntu
Linux kernel (Vivid HWE) vulnerabilities
vendor_ubuntu·2015-07-23·CVSS 4.9
CVE-2015-4692 [MEDIUM] Linux kernel (Vivid HWE) vulnerabilities
Title: Linux kernel (Vivid HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the kvm (kernel virtual machine) subsystem's
kvm_apic_has_events function. A unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-4692)
Daniel Borkmann reported a kernel crash in the Linux kernel's BPF filter
JIT optimization. A local attacker could exploit this flaw to cause a
denial of service (system crash). (CVE-2015-4700)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker could exploit this flaw to cause a denial of
service using a flood of UDP packets with invalid checksums.
(CVE-2015-5364)
A flaw was discovered in how the Linux kernel handles invalid UDP
c
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2015-07-23·CVSS 7.2
CVE-2015-1805 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the user space memory copying for the pipe iovecs
in the Linux kernel. An unprivileged local user could exploit this flaw to
cause a denial of service (system crash) or potentially escalate their
privileges. (CVE-2015-1805)
A flaw was discovered in the kvm (kernel virtual machine) subsystem's
kvm_apic_has_events function. A unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-4692)
Daniel Borkmann reported a kernel crash in the Linux kernel's BPF filter
JIT optimization. A local attacker could exploit this flaw to cause a
denial of service (system crash). (CVE-2015-4700)
A flaw was discovered in how the Linux kernel h
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2015-07-23·CVSS 4.9
CVE-2015-4692 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
A flaw was discovered in the kvm (kernel virtual machine) subsystem's
kvm_apic_has_events function. A unprivileged local user could exploit this
flaw to cause a denial of service (system crash). (CVE-2015-4692)
Daniel Borkmann reported a kernel crash in the Linux kernel's BPF filter
JIT optimization. A local attacker could exploit this flaw to cause a
denial of service (system crash). (CVE-2015-4700)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A remote attacker could exploit this flaw to cause a denial of
service using a flood of UDP packets with invalid checksums.
(CVE-2015-5364)
A flaw was discovered in how the Linux kernel handles invalid UDP
checksums. A
Red Hat
kernel: net: incorrect processing of checksums in UDP implementation
vendor_redhat·2015-07-01·CVSS 7.8
CVE-2015-5364 [HIGH] CWE-835 kernel: net: incorrect processing of checksums in UDP implementation
kernel: net: incorrect processing of checksums in UDP implementation
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP packet flood.
A flaw was found in the way the Linux kernel's networking implementation handled UDP packets with incorrect checksum values. A remote attacker could potentially use this flaw to trigger an infinite loop in the kernel, resulting in a denial of service on the system, or cause a denial of service in applications using the edge triggered epoll functionality.
Red Hat
kernel: net: incorrect processing of checksums in UDP implementation
vendor_redhat·2015-07-01·CVSS 7.8
CVE-2015-5366 [HIGH] CWE-835 kernel: net: incorrect processing of checksums in UDP implementation
kernel: net: incorrect processing of checksums in UDP implementation
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 provide inappropriate -EAGAIN return values, which allows remote attackers to cause a denial of service (EPOLLET epoll application read outage) via an incorrect checksum in a UDP packet, a different vulnerability than CVE-2015-5364.
A flaw was found in the way the Linux kernel's networking implementation handled UDP packets with incorrect checksum values. A remote attacker could potentially use this flaw to trigger an infinite loop in the kernel, resulting in a denial of service on the system, or cause a denial of service in applications using the edge triggered epoll functionality.
Debian
CVE-2015-5366: linux - The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4...
vendor_debian·2015·CVSS 7.8
CVE-2015-5366 [HIGH] CVE-2015-5366: linux - The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4...
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 provide inappropriate -EAGAIN return values, which allows remote attackers to cause a denial of service (EPOLLET epoll application read outage) via an incorrect checksum in a UDP packet, a different vulnerability than CVE-2015-5364.
Scope: local
bookworm: resolved (fixed in 4.0.7-1)
bullseye: resolved (fixed in 4.0.7-1)
forky: resolved (fixed in 4.0.7-1)
sid: resolved (fixed in 4.0.7-1)
trixie: resolved (fixed in 4.0.7-1)
Debian
CVE-2015-5364: linux - The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4...
vendor_debian·2015·CVSS 7.8
CVE-2015-5364 [HIGH] CVE-2015-5364: linux - The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4...
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP packet flood.
Scope: local
bookworm: resolved (fixed in 4.0.7-1)
bullseye: resolved (fixed in 4.0.7-1)
forky: resolved (fixed in 4.0.7-1)
sid: resolved (fixed in 4.0.7-1)
trixie: resolved (fixed in 4.0.7-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-5364 kernel: net: incorrect processing of checksums in UDP implementation [fedora-all]
bugzilla·2015-07-03·CVSS 7.8
CVE-2015-5364 [HIGH] CVE-2015-5364 kernel: net: incorrect processing of checksums in UDP implementation [fedora-all]
CVE-2015-5364 kernel: net: incorrect processing of checksums in UDP implementation [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supp
Bugzilla
CVE-2015-5366 CVE-2015-5364 kernel: net: incorrect processing of checksums in UDP implementation
bugzilla·2015-07-03·CVSS 7.8
CVE-2015-5366 [HIGH] CVE-2015-5366 CVE-2015-5364 kernel: net: incorrect processing of checksums in UDP implementation
CVE-2015-5366 CVE-2015-5364 kernel: net: incorrect processing of checksums in UDP implementation
Linux kernel built with the networking support(CONFIG_NET) is vulnerable to an infinite loop issue. It could occur while receiving(recvmsg(2), recvfrom(2)) data over UDP channel, with an incorrect checksum value.
An unprivileged user could use this flaw to cause DoS(CVE-2015-5364) to a remote system via specially crafted UDP packets.
The CVE-2015-5366 issue is also a DoS, but is limited only to the affected application and not the entire system.
Upstream patch:
-> https://git.kernel.org/linus/beb39db59d14990e401e235faf66a6b9b31240b0
Reference:
-> http://seclists.org/oss-sec/2015/q3/10
Discussion:
CVE was assigned in http://seclists.org/oss-sec/2015/q3/10
---
Created kernel tracking bu
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=beb39db59d14990e401e235faf66a6b9b31240b0http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10761http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00023.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00049.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-08/msg00011.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00008.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00009.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00010.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00011.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00018.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00021.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1623.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1778.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1787.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0045.htmlhttp://rhn.redhat.com/errata/RHSA-2016-1096.htmlhttp://rhn.redhat.com/errata/RHSA-2016-1100.htmlhttp://www.debian.org/security/2015/dsa-3313http://www.debian.org/security/2015/dsa-3329http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.0.6http://www.openwall.com/lists/oss-security/2015/06/30/13http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.htmlhttp://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.htmlhttp://www.securityfocus.com/bid/75510http://www.securitytracker.com/id/1032794http://www.ubuntu.com/usn/USN-2680-1http://www.ubuntu.com/usn/USN-2681-1http://www.ubuntu.com/usn/USN-2682-1http://www.ubuntu.com/usn/USN-2683-1http://www.ubuntu.com/usn/USN-2684-1http://www.ubuntu.com/usn/USN-2713-1http://www.ubuntu.com/usn/USN-2714-1https://access.redhat.com/errata/RHSA-2016:1225https://bugzilla.redhat.com/show_bug.cgi?id=1239029https://github.com/torvalds/linux/commit/beb39db59d14990e401e235faf66a6b9b31240b0https://twitter.com/grsecurity/status/605854034260426753http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=beb39db59d14990e401e235faf66a6b9b31240b0http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10761http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00023.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00049.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-08/msg00011.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00008.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00009.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00010.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00011.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00018.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-09/msg00021.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1623.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1778.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1787.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0045.htmlhttp://rhn.redhat.com/errata/RHSA-2016-1096.htmlhttp://rhn.redhat.com/errata/RHSA-2016-1100.htmlhttp://www.debian.org/security/2015/dsa-3313http://www.debian.org/security/2015/dsa-3329http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.0.6http://www.openwall.com/lists/oss-security/2015/06/30/13http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.htmlhttp://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.htmlhttp://www.securityfocus.com/bid/75510http://www.securitytracker.com/id/1032794http://www.ubuntu.com/usn/USN-2680-1http://www.ubuntu.com/usn/USN-2681-1http://www.ubuntu.com/usn/USN-2682-1http://www.ubuntu.com/usn/USN-2683-1http://www.ubuntu.com/usn/USN-2684-1http://www.ubuntu.com/usn/USN-2713-1http://www.ubuntu.com/usn/USN-2714-1https://access.redhat.com/errata/RHSA-2016:1225https://bugzilla.redhat.com/show_bug.cgi?id=1239029https://github.com/torvalds/linux/commit/beb39db59d14990e401e235faf66a6b9b31240b0https://twitter.com/grsecurity/status/605854034260426753
2015-08-31
Published